PT-2014-1229 · Oracle · Java Se 8+1

Published

2014-04-15

·

Updated

2022-05-09

·

CVE-2014-0464

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Java SE 8
Description The issue allows a remote attacker to compromise data confidentiality and integrity using the Scripting component. It affects the Java Runtime Environment and Java Development Kit, allowing exploitation via unknown vectors related to Scripting.
Recommendations For Java SE 8, update to a version that includes a fix for this issue to prevent exploitation. As a temporary workaround, consider restricting access to the Scripting component until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2014-00424
BDU:2014-00425
CVE-2014-0464

Affected Products

Java Platform
Java Se 8