CVE-2003-0111
Summary
| CVE | CVE-2003-0111 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2003-05-05 04:00:00 UTC |
| Updated | 2019-04-30 14:27:00 UTC |
| Description | The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote attackers to bypass security checks and execute arbitrary code via a malicious Java applet, aka "Flaw in Microsoft VM Could Enable System Compromise." |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Virtual Machine | 3802 | All | All | All |
| Application | Microsoft | Virtual Machine | 3805 | All | All | All |
| Application | Microsoft | Virtual Machine | 3809 | All | All | All |
| Application | Microsoft | Virtual Machine | 3802 | All | All | All |
| Application | Microsoft | Virtual Machine | 3805 | All | All | All |
| Application | Microsoft | Virtual Machine | 3809 | All | All | All |
| Operating System | Microsoft | Windows 2000 | All | All | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp1 | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp2 | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp3 | All | All |
| Operating System | Microsoft | Windows 2000 | All | All | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp1 | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp2 | All | All |
| Operating System | Microsoft | Windows 2000 | All | sp3 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | All | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp1 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp2 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp3 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | All | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp1 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp2 | All | All |
| Operating System | Microsoft | Windows 2000 Terminal Services | All | sp3 | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Microsoft Security Bulletin MS03-011 - Critical | Microsoft Docs | MS | docs.microsoft.com | |
| CERT/CC Vulnerability Note VU#447569 | CERT-VN | www.kb.cert.org | Patch, Third Party Advisory, US Government Resource |
| ISS X-Force Database:msvm-bytecode-improper-validation(11751): Microsoft VM ByteCode Verifier improper validation of code | XF | www.iss.net | Patch, Vendor Advisory |
| Repository / Oval Repository | OVAL | oval.cisecurity.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.