URL Security Zone low Java permissions

Risk Level: Medium risk vulnerability  Medium

Check or Attack Name: Zone low java permissions

Platforms: Windows NT, Internet Explorer
Description:

Allows Java applets to operate out of the Java sandbox model, so that they will be allowed to perform high-capability operations, such as file I/O operations. A potentially malicious Java applet may perform unauthorized modifications to the machine.

Remedy:

Depending on your version, select one of the following choices in Internet Explorer:

  • For Internet Explorer 4.x:

    1. Open Internet Explorer 4.x, follow these steps:
    2. From the View menu, select Internet Options.
    3. Click the Security tab.
    4. Under Internet Zone, click Custom (for expert users).
    5. Click Settings.
    6. Under Java, Java Permissions, enable High Safety.
    7. Click OK to apply these changes.
  • For Internet Explorer 5.x:

    1. Open Internet Explorer 5.x.
    2. From the Tools menu, select Internet Options.
    3. Click the Security tab.
    4. Select the appropriate Zone.
    5. Click Custom Level.
    6. In the Java, Java Permissions area, enable High Safety.
    7. Click OK twice to apply the changes.

References:

X-Force Logo
Know Your Risks