Executive Summary

Summary
Title Sun Alert 268328 A Security Vulnerability in Sun Virtual Desktop Infrastructure (VDI) Software 3.0 may Lead to Unauthorized Access to the VirtualBox Web Service
Informations
Name SUN-268328 First vendor Publication 2009-11-03
Vendor Sun Last vendor Modification 2009-11-03
Severity (Vendor) N/A Revision N/A

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score 7.5 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Product: Sun Virtual Desktop Infrastructure (VDI) Software 3.0
State: Resolved
First released: 03-Nov-2009

Original Source

Url : http://blogs.sun.com/security/entry/sun_alert_268328_a_security

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-287 Improper Authentication

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 1
Application 2

Open Source Vulnerability Database (OSVDB)

Id Description
59685 Sun Virtual Desktop Infrastructure (VDI) VirtualBox Web Service Unspecified R...

Nessus® Vulnerability Scanner

Date Description
2009-08-13 Name : The remote host is missing Sun Security Patch number 141481-03
File : solaris10_141481.nasl - Type : ACT_GATHER_INFO
2009-08-13 Name : The remote host is missing Sun Security Patch number 141482-03
File : solaris10_x86_141482.nasl - Type : ACT_GATHER_INFO