CISA Known Exploited Vulnerability

CVE-2013-0422 Ransomware

Oracle · Java Runtime Environment (JRE)

Oracle JRE Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE CWE-264
Ransomware Known

CISA description

A vulnerability in the way Java restricts the permissions of Java applets could allow an attacker to execute commands on a vulnerable system.

Required action

Apply updates per vendor instructions.