CVE-2003-0111 describes a critical vulnerability in the ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, impacting Windows and Internet Explorer. This flaw allows remote attackers to bypass security checks and execute arbitrary code through a malicious Java applet. With a CVSS score of 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P), it represents a high-severity risk due to its network-based attack vector, low access complexity, and potential for complete system compromise. While not listed in CISA KEV and showing no recent community discussion or media coverage, an ExploitDB entry (EDB-22027) confirms the existence of exploit code for this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3802CPE matchmatch criteria | cpe:2.3:a:microsoft:virtual_machine:3802:*:*:*:*:*:*:* | ||
3805CPE matchmatch criteria | cpe:2.3:a:microsoft:virtual_machine:3805:*:*:*:*:*:*:* | ||
3809CPE matchmatch criteria | cpe:2.3:a:microsoft:virtual_machine:3809:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2000:*:sp1:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.