CVE Database
/

CVE-2003-0896

Back to search

CVE-2003-0896

Published: Oct 25, 2003

Modified: Aug 8, 2024

PUBLISHED

Description

The loadClass method of the sun.applet.AppletClassLoader class in the Java Virtual Machine (JVM) in Sun SDK and JRE 1.4.1_03 and earlier allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a loaded class name that contains "/" (slash) instead of "." (dot) characters, which bypasses a call to the Security Manager's checkPackageAccess method.

VendorProductVersions

n/a

n/a

affected
n/a

References

8879
vdb-entry
x_refsource_BID
57221
vendor-advisory
x_refsource_SUNALERT
200356
vendor-advisory
x_refsource_SUNALERT
HPSBUX0311-295
vendor-advisory
x_refsource_HP

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now