Vulnerabilities > SUN > Java Plug IN > 1.4.2.01

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1521 Unspecified vulnerability in SUN Java Plug-In
Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apache.crimson.tree.XmlDocument class, which violates the Java security model.
network
low complexity
sun
6.4
2003-12-31 CVE-2003-1516 Cross-Site Applet Sandbox Security Model Violation vulnerability in SUN Java Plug-In 1.4.201
The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.
network
sun
6.8