Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:10841
HistoryJan 15, 2019 - 8:52 a.m.

Unauthorized Time Zone Modification

2019-01-1508:52:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.009 Low

EPSS

Percentile

83.0%

IBM Java Runtime Environment shipped as part of Red Hat Network Satellite Server has a vulnerability which affects the time zone information of the application. The vulnerability is possible because java.util.TimeZone fails to prevent the untrusted Java application or applet to change the time zone to default time zone of its contexts.

References