peter bassill · operator
$ cve CVE-2003-0111 JSON

CVE-2003-0111 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 36.7% (pctl 98)

Patch early

A public exploit exists.

Description

The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote attackers to bypass security checks and execute arbitrary code via a malicious Java applet, aka "Flaw in Microsoft VM Could Enable System Compromise."

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS36.67% — more likely to be exploited than 98% of all CVEs
On CISA KEVno
Public exploityes
Published2003-05-05
Last modified2026-06-16

Affected (3)

VendorProduct
microsoftvirtual machine
microsoftwindows 2000
microsoftwindows 2000 terminal services

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD