Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2007-3922

Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and earlier, 6 through 6 Update 1, and SDK and JRE 1.4.2_14 and earlier, allows remote attackers to violate the security model for an applet's outbound connections by connecting to certain localhost services running on the machine that loaded the applet.

  • Published: Jul 21, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-3922
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

No CWE or OWASP classifications available.

Software From Fixed in
sun / jre - 1.5.0.x
sun / jre - 1.6.0.x
sun / jdk - 1.6.0.x
sun / sdk - 1.4.2_14.x
sun / jdk - 1.5.0.x