Security Advisory
CVE-2009-1712
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
WebKit in Apple Safari before 4.0 does not prevent remote loading of local Java applets, which allows remote attackers to execute arbitrary code, gain privileges, or obtain sensitive information via an APPLET or OBJECT element.