Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IcedTea6和IcedTea-Web JNLP实现敏感信息泄露漏洞
Vulnerability Description
IcedTea6和IcedTea-Web都是美国红帽(Red Hat)公司和GNU Classpath团队共同开发的产品。IcedTea6是一个包含有OpenJDK代码库的软件开发和系统集成项目。IcedTea-Web是一款可运行Java Applet(使用Java语言编写的小应用程序)的免费Web浏览器插件。 IcedTea6 1.9.9之前的1.9.x版本,1.8.9之前的版本和IcedTea-Web 1.1.1之前的1.1.x版本和1.0.4之前的版本中的Java Network Launching
CVSS Information
N/A
Vulnerability Type
N/A