Security Advisory

CVE-2013-1926

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-04-29 22:00:00
Last updated 2024-08-06 15:20:37
Assigner redhat
State PUBLISHED

Description

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class loader for applets with the same codebase path but from different domains, which allows remote attackers to obtain sensitive information or possibly alter other applets via a crafted applet.