Lucene search

K
cveMitreCVE-2002-1294
HistoryNov 29, 2002 - 5:00 a.m.

CVE-2002-1294

2002-11-2905:00:00
mitre
web.nvd.nist.gov
24
microsoft
java
internet explorer
cve-2002-1294
nvd
denial of service
unauthorized activities
applets

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

High

EPSS

0.057

Percentile

93.4%

The Microsoft Java implementation, as used in Internet Explorer, can provide HTML object references to applets via Javascript, which allows remote attackers to cause a denial of service (crash due to illegal memory accesses) and possibly conduct other unauthorized activities via an applet that uses those references to access proprietary Microsoft methods.

Affected configurations

Nvd
Node
microsoftjava_virtual_machineMatch1.1
VendorProductVersionCPE
microsoftjava_virtual_machine1.1cpe:2.3:a:microsoft:java_virtual_machine:1.1:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

High

EPSS

0.057

Percentile

93.4%

Related for CVE-2002-1294