CVE-2005-3904

Java JDK/JRE <5.0.3, >=1.4.2, >=1.3.1 - Remote Code Execution

Title source: manual
STIX 2.1

Description

Unspecified vulnerability in Java Management Extensions (JMX) in Java JDK and JRE 5.0 Update 3, 1.4.2 and later, 1.3.1 and later allows remote attackers to escape the Java sandbox and access arbitrary files or execute arbitrary application via unknown attack vectors.

References (14)

Core 14
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17847
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18503
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15615
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2946
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2675
Various Sources x_refsource_confirm
http://www-1.ibm.com/support/docview.wss?uid=swg21225628
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2636
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102017-1
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/931684
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005/Nov/msg00004.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015281
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/23252
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17748
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18092

Scores

EPSS 0.1000
EPSS Percentile 93.2%

Details

Status published
Products (14)
sun/jdk 1.5.0_03 (3 CPE variants)
sun/jre 1.3.0 (6 CPE variants)
sun/jre 1.3.1 (6 CPE variants)
sun/jre 1.4.1
sun/jre 1.4.2
sun/jre 1.4.2_1
sun/jre 1.4.2_2
sun/jre 1.4.2_3
sun/jre 1.4.2_4
sun/jre 1.4.2_5
... and 4 more
Published Nov 30, 2005
Tracked Since Feb 18, 2026