2 results (0.002 seconds)

CVSS: 9.1EPSS: 2%CPEs: 4EXPL: 3

31 Dec 2003 — Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apache.crimson.tree.XmlDocument class, which violates the Java security model. • https://www.exploit-db.com/exploits/23270 •

CVSS: 9.1EPSS: 2%CPEs: 1EXPL: 3

31 Dec 2003 — The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet. • https://www.exploit-db.com/exploits/23265 •