Security Advisory
CVE-2007-5237
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."