Lucene search

K
cveMitreCVE-2002-2248
HistoryOct 14, 2007 - 8:00 p.m.

CVE-2002-2248

2007-10-1420:00:00
CWE-119
mitre
web.nvd.nist.gov
18
cve-2002-2248
buffer overflow
java
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

High

EPSS

0.04

Percentile

92.1%

Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary code via an applet that calls the WDefaultFontCharset constructor with a long string and invokes the canConvert method.

Affected configurations

Nvd
Node
netscapecommunicatorMatch4.0
OR
netscapecommunicatorMatch4.5
OR
netscapecommunicatorMatch4.6
OR
netscapecommunicatorMatch4.7
OR
netscapecommunicatorMatch4.51
OR
netscapecommunicatorMatch4.61
OR
netscapecommunicatorMatch4.72
OR
netscapecommunicatorMatch4.73
OR
netscapecommunicatorMatch4.74
OR
netscapecommunicatorMatch4.75
OR
netscapecommunicatorMatch4.76
OR
netscapecommunicatorMatch4.77
OR
netscapecommunicatorMatch4.78
OR
netscapecommunicatorMatch4.79
VendorProductVersionCPE
netscapecommunicator4.0cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*
netscapecommunicator4.5cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*
netscapecommunicator4.6cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*
netscapecommunicator4.7cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*
netscapecommunicator4.51cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*
netscapecommunicator4.61cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*
netscapecommunicator4.72cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*
netscapecommunicator4.73cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*
netscapecommunicator4.74cpe:2.3:a:netscape:communicator:4.74:*:*:*:*:*:*:*
netscapecommunicator4.75cpe:2.3:a:netscape:communicator:4.75:*:*:*:*:*:*:*
Rows per page:
1-10 of 141

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

High

EPSS

0.04

Percentile

92.1%

Related for CVE-2002-2248