Exploitation Summary
EIP tracks 2 public exploits for CVE-2012-5088.
PoCs published by Metasploit, Unknown, juan vazquez, including Metasploit module exploits/multi/browser/java_jre17_method_handle.
AI-analyzed exploit summary This Metasploit module exploits CVE-2012-5088, a Java Applet Method Handle vulnerability, to achieve remote code execution by abusing the Method Handle class in Java 7u7 and earlier. It delivers a malicious JAR file via an HTML page with an embedded applet, bypassing sandbox restrictions.
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.
Exploits (2)
This Metasploit module exploits CVE-2012-5088, a Java Applet Method Handle vulnerability, to achieve remote code execution by abusing the Method Handle class in Java 7u7 and earlier. It delivers a malicious JAR file via an HTML page with an embedded applet, bypassing sandbox restrictions.
This Metasploit module exploits CVE-2012-5088 in Java 7u7 and earlier by abusing the Method Handle class in a Java Applet to execute arbitrary code outside the sandbox. It delivers a malicious JAR file containing exploit classes and a payload via an HTML page with an embedded applet.