PT-2014-1229 · Oracle · Java Se 8+1
Published
2014-04-15
·
Updated
2022-05-09
·
CVE-2014-0464
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Java SE 8
Description
The issue allows a remote attacker to compromise data confidentiality and integrity using the Scripting component. It affects the Java Runtime Environment and Java Development Kit, allowing exploitation via unknown vectors related to Scripting.
Recommendations
For Java SE 8, update to a version that includes a fix for this issue to prevent exploitation.
As a temporary workaround, consider restricting access to the Scripting component until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Java Platform
Java Se 8