VYPR
Unrated severityNVD Advisory· Published Feb 9, 2002· Updated Apr 16, 2026

CVE-2002-1601

CVE-2002-1601

Description

The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.

Affected products

3
  • cpe:2.3:a:adobe:photodeluxe:3.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:adobe:photodeluxe:3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:adobe:photodeluxe:3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:adobe:photodeluxe:4.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.