Remote File Access Vulnerability in Microsoft Java Implementation for Internet Explorer
CVE-2002-1291
Currently unrated
What is CVE-2002-1291?
The vulnerability in the Microsoft Java implementation, utilized by Internet Explorer, allows remote attackers to exploit a weakness in the applet tag. By setting a codebase to a specific 'file://%00' URL containing a null character, attackers can gain unauthorized access to arbitrary local files and network shares. This poses a significant risk as it enables the potential exposure of sensitive data without proper authentication or user consent.