← Back

CVE-2004-1029

nvd nist
Published: Mar 1, 2005Modified: Apr 16, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.

Affected (157)

Products: Conectiva: Linux · Hp: Java Sdk Rte, Hp Ux · Sun: Jdk, Jre · +2 more
Show all products
1 product
Linux
2 products
Java Sdk Rte
Hp Ux
2 products
Jdk
Jre
2 products
Enterprise Firewall
Gateway Security 5400
1 product
Linux
Configuration A
150 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0
Hp
Version 1.3
Version 1.4
Sun
Version 1.3.1_01
Version 1.3.1_01
Version 1.3.1_01a
Version 1.3.1_02
Version 1.3.1_02
Version 1.3.1_02
Version 1.3.1_03
Version 1.3.1_03
Version 1.3.1_03
Version 1.3.1_04
Version 1.3.1_05
Version 1.3.1_05
Version 1.3.1_05
Version 1.3.1_06
Version 1.3.1_06
Version 1.3.1_06
Version 1.3.1_07
Version 1.3.1_07
Version 1.3.1_07
Version 1.4.0_01
Version 1.4.0_02
Version 1.4.0_02
Version 1.4.0_02
Version 1.4.0_03
Version 1.4.0_03
Version 1.4.0_03
Version 1.4.0_4
Version 1.4.0_4
Version 1.4.0_4
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.1_01
Version 1.4.1_01
Version 1.4.1_01
Version 1.4.1_02
Version 1.4.1_02
Version 1.4.1_02
Version 1.4.1_03
Version 1.4.1_03
Version 1.4.1_03
Version 1.4.2
Version 1.4.2
Version 1.4.2
Version 1.4.2_01
Version 1.4.2_02
Version 1.4.2_03
Version 1.4.2_03
Version 1.4.2_03
Version 1.4.2_04
Version 1.4.2_04
Version 1.4.2_04
Version 1.4.2_05
Version 1.4.2_05
Version 1.4.2_05
Version 1.4
Version 1.4
Version 1.4
Sun
Version 1.3.0
Version 1.3.0
Version 1.3.0
Version 1.3.0 update1
Version 1.3.0 update2
Version 1.3.0 update2
Version 1.3.0 update2
Version 1.3.0 update3
Version 1.3.0 update4
Version 1.3.0 update4
Version 1.3.0 update5
Version 1.3.0 update5
Version 1.3.0 update5
Version 1.3.1
Version 1.3.1 update1
Version 1.3.1 update1
Version 1.3.1 update1
Version 1.3.1 update1a
Version 1.3.1 update4
Version 1.3.1 update4
Version 1.3.1 update8
Version 1.3.1 update8
Version 1.3.1 update8
Version 1.3.1_02
Version 1.3.1_02
Version 1.3.1_02
Version 1.3.1_03
Version 1.3.1_03
Version 1.3.1_03
Version 1.3.1_05
Version 1.3.1_05
Version 1.3.1_05
Version 1.3.1_06
Version 1.3.1_06
Version 1.3.1_06
Version 1.3.1_07
Version 1.3.1_07
Version 1.3.1_07
Version 1.3.1_09
Version 1.3.1_09
Version 1.3.1_09
Version 1.4.0_01
Version 1.4.0_01
Version 1.4.0_02
Version 1.4.0_02
Version 1.4.0_02
Version 1.4.0_03
Version 1.4.0_03
Version 1.4.0_03
Version 1.4.0_04
Version 1.4.0_04
Version 1.4.0_04
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.1 update3
Version 1.4.1 update3
Version 1.4.1 update3
Version 1.4.1_01
Version 1.4.1_01
Version 1.4.1_01
Version 1.4.1_02
Version 1.4.1_02
Version 1.4.1_02
Version 1.4.1_07
Version 1.4.2
Version 1.4.2
Version 1.4.2
Version 1.4.2 update1
Version 1.4.2 update1
Version 1.4.2 update1
Version 1.4.2 update2
Version 1.4.2 update2
Version 1.4.2 update2
Version 1.4.2 update3
Version 1.4.2 update3
Version 1.4.2 update3
Version 1.4.2 update4
Version 1.4.2 update4
Version 1.4.2 update4
Version 1.4.2 update5
Version 1.4.2 update5
Version 1.4.2 update5
Version 1.4
Version 1.4
Version 1.4
Symantec
Version 8.0
Version 8.0
Version 8.0
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Hp
Version 11.00
Version 11.11
Version 11.22
Version 11.23
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 2.0.1
Version 2.0

Related CWEs

References (30)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.