Main
Vulnerability Database
Exploits
ID:1144 - Exploit for Security bypass in Oracle Java SE - CVE-2013-2423
ID:1144 - Exploit for Security bypass in Oracle Java SE - CVE-2013-2423
Published: March 18, 2020
Vulnerability identifier: #VU6171
Vulnerability risk: Low
CVE-ID: CVE-2013-2423
CWE-ID: CWE-284
Exploitation vector: Remote access
Vulnerable software:
Oracle Java SE
Oracle Java SE
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to bypass security restrictions on the target system.
The weakness caused by weak access control on static classes. Tricking the victim into running a malicious Java applet a remote attacker can bypass Java sandbox restrictions.
Successful exploitation of the vulnerability results in security bypass.
The weakness caused by weak access control on static classes. Tricking the victim into running a malicious Java applet a remote attacker can bypass Java sandbox restrictions.
Successful exploitation of the vulnerability results in security bypass.
Remediation
Install update from vendor's website.