Unrated severityNVD Advisory· Published Feb 9, 2002· Updated Apr 16, 2026
CVE-2002-1601
CVE-2002-1601
Description
The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.
Affected products
3cpe:2.3:a:adobe:photodeluxe:3.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:adobe:photodeluxe:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:photodeluxe:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:photodeluxe:4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/4106nvdVendor Advisory
- www.kb.cert.org/vuls/id/116875nvdUS Government Resource
- www.kb.cert.org/vuls/id/AAMN-56LQ2JnvdUS Government Resource
- exchange.xforce.ibmcloud.com/vulnerabilities/8210nvd
News mentions
0No linked articles in our index yet.