Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18948
HistoryMay 16, 2019 - 2:18 a.m.

Improper Access Control

2019-05-1602:18:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

46.4%

Oracle Java SE is vulnerable to improper access control vulnerability. This is because the I18n component of OpenJDK could use an untrusted search path when loading resource bundle classes. A local attacker could possibly use this flaw to execute arbitrary code as another local user by making their Java application load an attacker controlled class file.

References