Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-0723

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2004-0723
Last Modified 05 Sep 2008 04:39:13
Published 27 Jul 2004 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2004-0723

Summary

Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/Key/Value" commands, aka "cross-site Java."

Vulnerable Systems

Application

  • Microsoft Java Virtual Machine 5.0.0.3810


References

XF - msjvm-sandbox-bypass(16666)

BID - 10688

BUGTRAQ - 20040710 Covert Channels allow Cross-Site-Java in Microsoft VM


Last Updated: 27 May 2016 10:38:44