![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2002-1292 |
Description: | The Microsoft Java virtual machine (VM) build 5.0.3805 and earlier, as used in Internet Explorer, allows remote attackers to extend the Standard Security Manager (SSM) class (com.ms.security.StandardSecurityManager) and bypass intended StandardSecurityManager restrictions by modifying the (1) deniedDefinitionPackages or (2) deniedAccessPackages settings, causing a denial of service by adding Java applets to the list of applets that are prevented from running. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2002-1292 BugTraq ID: 6133 http://www.securityfocus.com/bid/6133 Bugtraq: 20021108 Technical information about unpatched MS Java vulnerabilities (Google Search) http://marc.info/?l=bugtraq&m=103682630823080&w=2 CERT/CC vulnerability note: VU#237777 http://www.kb.cert.org/vuls/id/237777 Microsoft Security Bulletin: MS02-069 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-069 http://marc.info/?l=ntbugtraq&m=103684360031565&w=2 XForce ISS Database: msvm-ssm-restriction-bypass(10585) https://exchange.xforce.ibmcloud.com/vulnerabilities/10585 |