CISA Known Exploited Vulnerability

CVE-2013-0422

Oracle · Java Runtime Environment (JRE)

Oracle JRE Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE CWE-264
Ransomware Unknown

CISA description

A vulnerability in the way Java restricts the permissions of Java applets could allow an attacker to execute commands on a vulnerable system.

Required action

Apply updates per vendor instructions.