CVE-2001-1008
Published Aug 31, 2001
Last updated 16 years ago
Overview
- Description
- Java Plugin 1.4 for JRE 1.3 executes signed applets even if the certificate is expired, which could allow remote attackers to conduct unauthorized activities via an applet that has been signed by an expired certificate.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sun:java_plug-in:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B01AB32D-BC5B-4301-B6D2-CA43DB9F8F5D" }, { "criteria": "cpe:2.3:a:sun:jre:1.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AAB87D43-2860-43DD-94EE-886D7D75A351" } ], "operator": "OR" } ] } ]