Executive Summary

Summary
Title Sun Alert 234661 Security Vulnerability in the Solaris 10 Java Desktop System (JDS) XscreenSaver(1) Application May Allow Unauthorized Access to Data
Informations
Name SUN-234661 First vendor Publication 2008-03-12
Vendor Sun Last vendor Modification 2008-03-12
Severity (Vendor) N/A Revision N/A

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:M/Au:N/C:N/I:C/A:C)
Cvss Base Score 6.3 Attack Range Local
Cvss Impact Score 9.2 Attack Complexity Medium
Cvss Expoit Score 3.4 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Product: Solaris 10 Operating System

A Security vulnerability exists in the XscreenSaver(1) application in the
Solaris 10 Java Desktop System (JDS) when the GNOME On-Screen Keyboard (GOK)
is being used. This may allow users to bypass authentication to the XscreenSaver
process and gain unauthorized access to data.

State: Resolved
First released: 12-Mar-2008

Original Source

Url : http://blogs.sun.com/security/entry/sun_alert_234661_security_vulnerability

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-287 Improper Authentication

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 2

Open Source Vulnerability Database (OSVDB)

Id Description
42873 Solaris Java Desktop System (JDS) XscreenSaver Unspecified Authentication Bypass

Nessus® Vulnerability Scanner

Date Description
2007-02-18 Name : The remote host is missing Sun Security Patch number 120094-36
File : solaris10_120094.nasl - Type : ACT_GATHER_INFO
2007-02-18 Name : The remote host is missing Sun Security Patch number 120095-36
File : solaris10_x86_120095.nasl - Type : ACT_GATHER_INFO

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2013-02-06 19:08:14
  • Multiple Updates