CVE-2002-1601

The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:photodeluxe:3.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:photodeluxe:3.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:photodeluxe:4.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:41

Type Values Removed Values Added
References () http://www.kb.cert.org/vuls/id/116875 - US Government Resource () http://www.kb.cert.org/vuls/id/116875 - US Government Resource
References () http://www.kb.cert.org/vuls/id/AAMN-56LQ2J - US Government Resource () http://www.kb.cert.org/vuls/id/AAMN-56LQ2J - US Government Resource
References () http://www.securityfocus.com/bid/4106 - Vendor Advisory () http://www.securityfocus.com/bid/4106 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/8210 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/8210 -

Information

Published : 2002-02-09 05:00

Updated : 2024-11-20 23:41


NVD link : CVE-2002-1601

Mitre link : CVE-2002-1601

CVE.ORG link : CVE-2002-1601


JSON object : View

Products Affected

adobe

  • photodeluxe