Back
CVE-2005-3907
Unspecified vulnerability in Java Runtime Environment in Java JDK and JRE 5.0 Update 3 and earlier allows remote attackers to escape the Java sandbox and access arbitrary files or execute arbitrary applications via unknown attack vectors involving untrusted Java applets.
Published: Nov 30, 2005
Modified: Jun 16, 2026
NVD-CWE-noinfo
CVSS Metrics
Affected Products (29)
| Vendor | Product | Version |
|---|---|---|
| sun | jdk | 1.5.0_03 |
| sun | jdk | 1.5.0_03 |
| sun | jdk | 1.5.0_03 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.0 |
| sun | jre | 1.3.1 |
| sun | jre | 1.3.1 |
| sun | jre | 1.3.1 |
| sun | jre | 1.3.1 |
| sun | jre | 1.3.1 |
| sun | jre | 1.3.1 |
| sun | jre | 1.4.1 |
| sun | jre | 1.4.2 |
| sun | jre | 1.4.2_1 |
| sun | jre | 1.4.2_2 |
| sun | jre | 1.4.2_3 |
…and 9 more
GitHub Security Advisory GHSA-wg5j-8jqj-w57c
Unspecified vulnerability in Java Runtime Environment in Java JDK and JRE 5.0 Update 3 and...
References (22)
- http://lists.apple.com/archives/security-announce/2005/Nov/msg00004.html
- http://secunia.com/advisories/17748 Patch, Vendor Advisory
- http://secunia.com/advisories/17847 Vendor Advisory
- http://secunia.com/advisories/18092 Vendor Advisory
- http://securitytracker.com/id?1015282
- http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102050-1 Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/355284 US Government Resource
- http://www.securityfocus.com/bid/15615
- http://www.vupen.com/english/advisories/2005/2636 Vendor Advisory
- http://www.vupen.com/english/advisories/2005/2675 Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23250
- http://lists.apple.com/archives/security-announce/2005/Nov/msg00004.html
- http://secunia.com/advisories/17748 Patch, Vendor Advisory
- http://secunia.com/advisories/17847 Vendor Advisory
- http://secunia.com/advisories/18092 Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
4.63%
Top 9% most likely to be exploited
Threat Score
31.4 / 100
Data Sources
NVD
EPSS
GitHub