Multiple security vulnerabilities in Google App Engine Java Security Sandbox
Release date: 2014-6 6
Updated on:
Affected Systems:
Google App Engine
Description:
Bugtraq id: 71522
Google App Engine allows Web developers to develop their own Web applications, test them in their internal frameworks, and deploy them in the Google's appspot.com domain.
Google App Engine has multiple security vulnerabilities. Attackers can exploit this vulnerability to obtain sensitive information, execute arbitrary code, bypass certain security restrictions, and perform unauthorized operations.
<* Source: Security configurations
Link: http://seclists.org/fulldisclosure/2014/Dec/26
*>
Suggestion:
Vendor patch:
Google
------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.google.com
This article permanently updates the link address: