CVE Vulnerabilities

CVE-2002-1601

Published: Feb 09, 2002 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.

Affected Software

Name Vendor Start Version End Version
Photodeluxe Adobe 3.0 (including) 3.0 (including)
Photodeluxe Adobe 3.1 (including) 3.1 (including)
Photodeluxe Adobe 4.0 (including) 4.0 (including)

References