CVE-2009-2717

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
10/08/2009
Last modified:
09/04/2025

Description

The Abstract Window Toolkit (AWT) implementation in Sun Java SE 6 before Update 15 on Windows 2000 Professional does not provide a Security Warning Icon, which makes it easier for context-dependent attackers to trick a user into interacting unsafely with an untrusted applet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sun:java_se:*:14:*:*:*:*:*:* 6 (including)
cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*