Unrated severityNVD Advisory· Published Oct 11, 2002· Updated Apr 16, 2026
CVE-2002-0865
CVE-2002-0865
Description
A certain class that supports XML (Extensible Markup Language) in Microsoft Virtual Machine (VM) 5.0.3805 and earlier, probably com.ms.osp.ospmrshl, exposes certain unsafe methods, which allows remote attackers to execute unsafe code via a Java applet, aka "Inappropriate Methods Exposed in XML Support Classes."
Affected products
8cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3000:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3100:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3188:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3200:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3300:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3802:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:virtual_machine:3805:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.iss.net/security_center/static/10135.phpnvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/140898nvdUS Government Resource
- www.securityfocus.com/bid/5752nvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-052nvd
News mentions
0No linked articles in our index yet.