A J2EE application uses System.exit(), which also shuts down its container.
The shutdown function should be a privileged function available only to a properly authorized administrative user
Web applications should not call methods that cause the virtual machine to exit, such as System.exit()
Web applications should also not throw any Throwables to the application server as this may adversely affect the container.
Non-web applications may have a main() method that contains a System.exit(), but generally should not call System.exit() from other locations in the code
Our security experts can help you identify and remediate CWE-382 vulnerabilities in your codebase.
Get Security Assessment