CVE Database
/

CVE-2009-1672

Back to search

CVE-2009-1672

Published: May 18, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allows remote attackers to (1) execute arbitrary code via a .jnlp URL in the argument to the launch method, and might allow remote attackers to launch JRE installation processes via the (2) installLatestJRE or (3) installJRE method.

VendorProductVersions

n/a

n/a

affected
n/a

References

8665
exploit
x_refsource_EXPLOIT-DB
34931
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now