CVE Vulnerabilities

CVE-2007-2397

Published: Jul 15, 2007 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

QuickTime for Java in Apple Quicktime before 7.2 does not properly check permissions, which allows remote attackers to disable security controls and execute arbitrary code via crafted Java applets.

Affected Software

Name Vendor Start Version End Version
Quicktime Apple - (including) - (including)
Quicktime Apple 7.0 (including) 7.0 (including)
Quicktime Apple 7.0.1 (including) 7.0.1 (including)
Quicktime Apple 7.0.2 (including) 7.0.2 (including)
Quicktime Apple 7.0.3 (including) 7.0.3 (including)
Quicktime Apple 7.0.4 (including) 7.0.4 (including)
Quicktime Apple 7.1 (including) 7.1 (including)
Quicktime Apple 7.1.1 (including) 7.1.1 (including)
Quicktime Apple 7.1.2 (including) 7.1.2 (including)
Quicktime Apple 7.1.3 (including) 7.1.3 (including)
Quicktime Apple 7.1.4 (including) 7.1.4 (including)
Quicktime Apple 7.1.5 (including) 7.1.5 (including)

References