...
Wiki Markup |
---|
\[[API 2006|AA. Bibliography#API 06]\] Class {{java.security.AccessController}} \[[MITRE 2009|AA. Bibliography#MITRE 09]\] CWE [272|http://cwe.mitre.org/data/definitions/272.html] |
...
SEC00SEC19-J. Avoid granting excess privilegesDo not rely on the default automatic signature verification provided by URLClassLoader and java.util.jar 02. Platform Security (SEC) SEC12-J. Do not grant untrusted code access to classes in inaccessible packages03. Declarations and Initialization (DCL)