Lucene search

K
nvd[email protected]NVD:CVE-2003-1521
HistoryDec 31, 2003 - 5:00 a.m.

CVE-2003-1521

2003-12-3105:00:00
web.nvd.nist.gov
7

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.007

Percentile

80.2%

Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apache.crimson.tree.XmlDocument class, which violates the Java security model.

Affected configurations

Nvd
Node
sunjava_plug-inMatch1.4
OR
sunjava_plug-inMatch1.4.2
OR
sunjava_plug-inMatch1.4.2_01
OR
sunjava_plug-inMatch1.4.2_02
VendorProductVersionCPE
sunjava_plug-in1.4cpe:2.3:a:sun:java_plug-in:1.4:*:*:*:*:*:*:*
sunjava_plug-in1.4.2cpe:2.3:a:sun:java_plug-in:1.4.2:*:*:*:*:*:*:*
sunjava_plug-in1.4.2_01cpe:2.3:a:sun:java_plug-in:1.4.2_01:*:*:*:*:*:*:*
sunjava_plug-in1.4.2_02cpe:2.3:a:sun:java_plug-in:1.4.2_02:*:*:*:*:*:*:*

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.007

Percentile

80.2%

Related for NVD:CVE-2003-1521