CVE-2002-2281
Symantec Java! JIT Compiler - Remote Code Execution via Jump Call
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-2281. PoCs published by Last Stage of Delirium.
AI-analyzed exploit summary This is a vulnerability writeup describing a flaw in the Java JustInTime compiler used by Netscape Communicator. The issue allows a malicious applet to redirect program flow to attacker-controlled memory, potentially executing arbitrary system commands outside the Java sandbox.
Description
Symantec Java! JIT (Just-In-Time) Compiler for Netscape Communicator 4.0 through 4.8 allows remote attackers to execute arbitrary Java commands via an applet that uses a jump call, which is not correctly compiled by the JIT compiler.
Exploits (1)
This is a vulnerability writeup describing a flaw in the Java JustInTime compiler used by Netscape Communicator. The issue allows a malicious applet to redirect program flow to attacker-controlled memory, potentially executing arbitrary system commands outside the Java sandbox.