cbcvebase.
CVE-2005-0418
published 2005-05-02

CVE-2005-0418: Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06, on Mac OS X, allows untrusted applications to gain privileges via the value…

PriorityP425high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.45%
70.5th percentile
Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06, on Mac OS X, allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file. NOTE: it is highly likely that this item will be MERGED with CVE-2005-0836.

Affected

7 ranges
VendorProductVersion rangeFixed in
sunj2se
sunj2se
sunj2se
sunj2se
sunj2se
sunj2se
sunj2se

CVSS provenance

nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat1.2LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.