Short Name |
HTTP:STC:ACTIVEX:JAVA-DTK |
---|---|
Severity |
High |
Recommended |
Yes |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Unsafe Java DTK ActiveX Control |
Release Date |
2013/01/22 |
Update Number |
2226 |
Supported Platforms |
idp-4.0.110090709+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects use of an unsafe ActiveX control for Java DTK. This control is being actively exploited by the "Blackhole" Trojan and similar malware and should not be used.
Oracle Java SE is prone to a remote code execution vulnerability in Java Runtime Environment. The vulnerability can be exploited over multiple protocols. This issue affects the 'Hotspot' sub-component. This vulnerability affects the following supported versions: 7 Update 4, 6 Update 32, 5 Update 35, 1.4.2_37