CVE-2007-3504
Directory traversal vulnerability in the PersistenceService in Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, for Windows allows remote attackers to perform unauthorized actions via…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (6.42%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Directory traversal vulnerability in the PersistenceService in Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, for Windows allows remote attackers to perform unauthorized actions via an application that grants file overwrite privileges to itself. NOTE: this can be leveraged to execute arbitrary code by overwriting a .java.policy file.
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 6.42% probability · 93th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- sun/jdk · sun/jre · sun/sdk
- Source
- cve@mitre.org
References
- http://docs.info.apple.com/article.html?artnum=307177
- http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html
- http://osvdb.org/37755
- http://secunia.com/advisories/25823Vendor Advisory
- http://secunia.com/advisories/28115Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102957-1Patch
- http://www.securityfocus.com/archive/1/472673/100/0/threaded
- http://www.securityfocus.com/bid/24695
- http://www.securitytracker.com/id?1018328
- http://www.vupen.com/english/advisories/2007/2384Vendor Advisory
- http://www.vupen.com/english/advisories/2007/4224Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35169
- http://docs.info.apple.com/article.html?artnum=307177
- http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html
- http://osvdb.org/37755
- http://secunia.com/advisories/25823Vendor Advisory
- http://secunia.com/advisories/28115Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102957-1Patch
- http://www.securityfocus.com/archive/1/472673/100/0/threaded
- http://www.securityfocus.com/bid/24695
- http://www.securitytracker.com/id?1018328
- http://www.vupen.com/english/advisories/2007/2384Vendor Advisory
- http://www.vupen.com/english/advisories/2007/4224Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35169
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.