CVSS2
Attack Vector
NETWORK
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:H/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
86.5%
Unspecified vulnerability in Java 2 Platform, Standard Edition (J2SE) 5.0 and 5.0 Update 1 and J2SE 1.4.2 up to 1.4.2_07, as used in multiple products and platforms including (1) HP-UX and (2) APC PowerChute, allows applications to assign permissions to themselves and gain privileges.
Vendor | Product | Version | CPE |
---|---|---|---|
sun | j2se | 1.4.2 | cpe:2.3:a:sun:j2se:1.4.2:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_01 | cpe:2.3:a:sun:j2se:1.4.2_01:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_02 | cpe:2.3:a:sun:j2se:1.4.2_02:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_03 | cpe:2.3:a:sun:j2se:1.4.2_03:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_04 | cpe:2.3:a:sun:j2se:1.4.2_04:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_05 | cpe:2.3:a:sun:j2se:1.4.2_05:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_06 | cpe:2.3:a:sun:j2se:1.4.2_06:*:sdk:*:*:*:*:* |
sun | j2se | 1.4.2_07 | cpe:2.3:a:sun:j2se:1.4.2_07:*:sdk:*:*:*:*:* |
sun | j2se | 5.0 | cpe:2.3:a:sun:j2se:5.0:*:sdk:*:*:*:*:* |
sun | j2se | 5.0_update1 | cpe:2.3:a:sun:j2se:5.0_update1:*:sdk:*:*:*:*:* |
marc.info/?l=bugtraq&m=112861772130119&w=2
marc.info/?l=bugtraq&m=112992075412844&w=2
nam-en.apc.com/cgi-bin/nam_en.cfg/php/enduser/std_adp.php?p_faqid=7638
rpmfind.net/linux/RPM/suse/updates/9.3/i386/rpm/i586/java-1_4_2-sun-src-1.4.2.08-0.1.i586.html
secunia.com/advisories/17272
securityreason.com/securityalert/56
securitytracker.com/id?1015643
sunsolve.sun.com/search/document.do?assetkey=1-26-101749-1
sunsolve.sun.com/search/document.do?assetkey=1-26-101799-1
www.novell.com/linux/security/advisories/2005_32_java2.html
www.securityfocus.com/bid/13958
www.vupen.com/english/advisories/2005/2150