First published: Mon Dec 23 2002(Updated: )
Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that invokes COM (Component Object Model) objects in a web site or an HTML mail.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT | =4.0-sp5 | |
Microsoft Windows Terminal Services using RDP | =sp1 | |
Microsoft Windows XP | =sp1 | |
Microsoft Windows NT | =4.0-sp3 | |
Microsoft Windows NT | =4.0-sp6a | |
Microsoft Windows XP | =gold | |
Microsoft Windows 2000 | ||
Microsoft Windows NT | =4.0-sp6 | |
Microsoft Windows NT | =4.0-sp1 | |
Microsoft Windows NT | =4.0-sp3 | |
Microsoft Windows NT | =4.0-sp6 | |
Microsoft Windows NT | =4.0-sp4 | |
Microsoft Windows 98SE | ||
Microsoft Windows NT | =4.0-sp5 | |
Microsoft Windows 2000 | =sp2 | |
Microsoft Windows NT | =4.0-sp6 | |
Microsoft Windows NT | =4.0-sp4 | |
Microsoft Windows NT | =4.0-sp2 | |
Microsoft Windows Terminal Services using RDP | =sp3 | |
Microsoft Windows NT | =4.0-sp6a | |
Microsoft Windows NT | =4.0-sp6a | |
Microsoft Windows NT | =4.0-sp4 | |
Microsoft Windows NT | =4.0-sp2 | |
Microsoft Windows NT | =4.0-sp1 | |
Microsoft Windows 2000 | =sp1 | |
Microsoft Windows NT | =4.0-sp4 | |
Microsoft Windows NT | =4.0-sp6 | |
Microsoft Windows 95 | ||
Microsoft Windows NT | =4.0-sp3 | |
Microsoft Windows NT | =4.0-sp1 | |
Microsoft Windows Me | ||
Microsoft Windows NT | =4.0-sp2 | |
Microsoft Windows NT | =4.0-sp5 | |
Microsoft Windows NT | =4.0-sp1 | |
Microsoft Windows NT | =4.0-sp6a | |
Microsoft Windows Terminal Services using RDP | ||
Microsoft Windows NT | =4.0-sp3 | |
Microsoft Windows 98 | =gold | |
Microsoft Windows Terminal Services using RDP | =sp2 | |
Microsoft Windows NT | =4.0-sp5 | |
Microsoft Windows 95 | =sr2 | |
Microsoft Windows NT | =4.0-sp2 | |
Microsoft Windows 2000 | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1257 is rated as critical due to the potential for remote attackers to execute arbitrary code.
To fix CVE-2002-1257, apply the security patches provided by Microsoft for affected versions of Windows and Microsoft Virtual Machine.
CVE-2002-1257 affects various versions of Microsoft Windows, including Windows NT, Windows XP, and Windows 2000.
Yes, CVE-2002-1257 can be exploited through HTML email containing a malicious Java applet.
The impact of CVE-2002-1257 on your system includes the risk of attackers gaining control and executing arbitrary commands remotely.