Show filters
247 Total Results
Displaying 241-247 of 247
Sort by:
Attacker Value
Unknown

CVE-2002-0979

Disclosure Date: September 24, 2002 (last updated February 22, 2025)
The Java logging feature for the Java Virtual Machine in Internet Explorer writes output from functions such as System.out.println to a known pathname, which can be used to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2002-0076

Disclosure Date: March 19, 2002 (last updated February 22, 2025)
Java Runtime Environment (JRE) Bytecode Verifier allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast operation, as seen in (1) Microsoft VM build 3802 and earlier as used in Internet Explorer 4.x and 5.x, (2) Netscape 6.2.1 and earlier, and possibly other implementations that use vulnerable versions of SDK or JDK, aka a variant of the "Virtual Machine Verifier" vulnerability.
0
Attacker Value
Unknown

CVE-2002-0058

Disclosure Date: March 15, 2002 (last updated February 22, 2025)
Vulnerability in Java Runtime Environment (JRE) allows remote malicious web sites to hijack or sniff a web client's sessions, when an HTTP proxy is being used, via a Java applet that redirects the session to another server, as seen in (1) Netscape 6.0 through 6.1 and 4.79 and earlier, (2) Microsoft VM build 3802 and earlier as used in Internet Explorer 4.x and 5.x, and possibly other implementations that use vulnerable versions of SDK or JDK.
0
Attacker Value
Unknown

CVE-2000-0711

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.
0
Attacker Value
Unknown

CVE-2000-0132

Disclosure Date: January 31, 2000 (last updated February 22, 2025)
Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
0
Attacker Value
Unknown

CVE-1999-0766

Disclosure Date: October 21, 1999 (last updated February 22, 2025)
The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox environment.
0
Attacker Value
Unknown

CVE-2000-0327

Disclosure Date: October 21, 1999 (last updated February 22, 2025)
Microsoft Virtual Machine (VM) allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast operation, aka the "Virtual Machine Verifier" vulnerability.
0