Home / Vulnerability Database / Java : Undocumented feature: security parameters modification
Java
Java : Undocumented feature: security parameters modification
Classification
Overview
The application contains the code that changes the logic of authentication by overwriting the variable that indicates whether the authentication is successful.
Using the assignment operator (=) instead of the comparison operator (==) is a common mistake. It is particularly dangerous and may be the part of the backdoor when occurs in the methods related to authentication.
LOW
DerScanner Severity Score
Do you want to fix Java : Undocumented feature: security parameters modification in your application?
See also
Java
Java : Race condition
Java
Java : Text4Shell Vulnerability
Java
