CVE-2008-1013

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/04/2008
Last modified:
09/04/2025

Description

Apple QuickTime before 7.4.5 enables deserialization of QTJava objects by untrusted Java applets, which allows remote attackers to execute arbitrary code via a crafted applet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apple:quicktime:*:*:*:*:*:*:*:* 7.4.4 (including)