Kaspersky ID:
KLA11753
Detect Date:
03/16/2020
Updated:
01/28/2026

Description

Multiple vulnerabilities were found in Oracle Java SE. Malicious users can exploit these vulnerabilities to cause denial of service, obtain sensitive information, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. A memory access vulnerability in XML can be exploited to cause denial of service.
  2. Vulnerability in Scripting component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  3. Vulnerability in Serialization component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  4. Vulnerability in Advanced Management Console component of Java SE can be exploited remotely to obtain sensitive information.
  5. Vulnerability in JSSE component of Java SE can be exploited remotely to obtain sensitive information, bypass security restrictions.
  6. Vulnerability in Security component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  7. Vulnerability in JSSE component of Java SE can be exploited remotely to obtain sensitive information.
  8. Vulnerability in JSSE component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.
  9. Vulnerability in Lightweight HTTP Server component of Java SE, Java SE Embedded can be exploited remotely to obtain sensitive information, bypass security restrictions.
  10. Vulnerability in Libraries component of Java SE, Java SE Embedded can be exploited remotely to obtain sensitive information, bypass security restrictions, cause denial of service.
  11. Vulnerability in JSSE component of Java SE can be exploited remotely to bypass security restrictions.
  12. Vulnerability in Concurrency component of Java SE, Java SE Embedded can be exploited remotely to cause denial of service.

Original advisories

Exploitation

Public exploits exist for this vulnerability.

Related products

CVE list

  • CVE-2019-18197
    critical
  • CVE-2020-2754
    warning
  • CVE-2020-2755
    warning
  • CVE-2020-2756
    warning
  • CVE-2020-2757
    warning
  • CVE-2020-2764
    warning
  • CVE-2020-2767
    warning
  • CVE-2020-2773
    warning
  • CVE-2020-2778
    warning
  • CVE-2020-2781
    high
  • CVE-2020-2800
    warning
  • CVE-2020-2803
    critical
  • CVE-2020-2805
    critical
  • CVE-2020-2816
    critical
  • CVE-2020-2830
    high

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.