Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2008-5423 | First vendor Publication | 2008-12-11 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:S/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 4.3 | Attack Range | Local |
Cvss Impact Score | 6.4 | Attack Complexity | Low |
Cvss Expoit Score | 3.1 | Authentication | Requires single instance |
Calculate full CVSS 2.0 Vectors scores |
Detail
Sun Sun Ray Server Software 3.x and 4.0 and Sun Ray Windows Connector 1.1 and 2.0 expose the LDAP password during a configuration step, which allows local users to discover the Sun Ray administration password, and obtain admin access to the Data Store and Administration GUI, via unspecified vectors related to the utconfig component of the Server Software and the uttscadm component of the Windows Connector. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5423 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-200 | Information Exposure |
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
51176 | Sun Ray Server Software (SRSS) utconfig Configuration Process LDAP Password L... |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2008-12-17 | Name : The remote host is missing Sun Security Patch number 127553-08 File : solaris10_127553.nasl - Type : ACT_GATHER_INFO |
2008-12-17 | Name : The remote host is missing Sun Security Patch number 127556-05 File : solaris10_127556.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 120879-08 File : solaris10_120879.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 118979-04 File : solaris8_118979.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 120879-08 File : solaris8_120879.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 118979-04 File : solaris9_118979.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 120879-08 File : solaris9_120879.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:12:45 |
|
2024-11-28 12:17:14 |
|
2020-05-23 00:22:42 |
|
2018-10-31 00:19:54 |
|
2017-08-08 09:24:33 |
|
2016-06-28 17:22:20 |
|
2016-04-26 18:06:35 |
|
2014-02-17 10:47:35 |
|
2013-05-11 00:32:12 |
|