5
CVSSv2

CVE-2002-0058

Published: 15/03/2002 Updated: 12/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Vulnerability in Java Runtime Environment (JRE) allows remote malicious web sites to hijack or sniff a web client's sessions, when an HTTP proxy is being used, via a Java applet that redirects the session to another server, as seen in (1) Netscape 6.0 up to and including 6.1 and 4.79 and previous versions, (2) Microsoft VM build 3802 and previous versions as used in Internet Explorer 4.x and 5.x, and possibly other implementations that use vulnerable versions of SDK or JDK.

Vulnerable Product Search on Vulmon Subscribe to Product

sun jre 1.2.2

sun jre 1.3.0

sun jre 1.1.8

microsoft virtual machine 3802

sun sdk 1.1.8_007

sun sdk 1.2.2_010

sun jdk 1.1.8

sun sdk 1.2.2_10

sun sdk 1.3_02