CVE-2003-0111

EXPLOITED

Microsoft VM <5.0.3809 - RCE

Title source: llm

Description

The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote attackers to bypass security checks and execute arbitrary code via a malicious Java applet, aka "Flaw in Microsoft VM Could Enable System Compromise."

Exploits (1)

exploitdb WORKING POC VERIFIED
by Last Stage of Delirium · textremotewindows
https://www.exploit-db.com/exploits/22027

Scores

EPSS 0.3932
EPSS Percentile 97.3%

Details

VulnCheck KEV 2010-05-01
Status published
Products (5)
microsoft/virtual_machine 3802
microsoft/virtual_machine 3805
microsoft/virtual_machine 3809
microsoft/windows_2000 (4 CPE variants)
microsoft/windows_2000_terminal_services (4 CPE variants)
Published May 05, 2003
Tracked Since Feb 18, 2026