Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17873
HistoryMay 02, 2019 - 6:09 a.m.

Improper Input Validation

2019-05-0206:09:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.054 Low

EPSS

Percentile

93.2%

Java SE, Java SE Embedded are vulnerable to improper input validation. It is discovered that the RMI registry and DCG implementations in the RMI component of OpenJDK performed deserialization of untrusted inputs. A remote attacker could possibly use this flaw to execute arbitrary code with the privileges of RMI registry or a Java RMI application which may leads to disclosure of information.

References