Loading
The com.ibm.rmi.io.SunSerializableFactory class in IBM Java SDK 7.0.0 before SR6 allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code via vectors related to deserialization inside the AccessController doPrivileged block.
Cite this page
CVE-2013-5456. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2013-5456
Use Ibm vendor hub and Java product page to widen CVE-2013-5456 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2013-0485, CVE-2013-5458 and CVE-2013-5457 for nearby disclosures in the same product family.