CVE-2008-5423
Last modified
CVE-2008-5423 is a vulnerability of currently unknown severity. Sun Sun Ray Server Software 3.x and 4.0 and Sun Ray Windows Connector 1.1 and 2.0 expose the LDAP password during a configuration step, which allows local users to discover the Sun Ray administration password, and obtain admin access to the Data Store and Administration GUI, via unspecified vectors related to the utconfig component of the Server Software and the uttscadm component of the Windows Connector.. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Sun Sun Ray Server Software 3.x and 4.0 and Sun Ray Windows Connector 1.1 and 2.0 expose the LDAP password during a configuration step, which allows local users to discover the Sun Ray administration password, and obtain admin access to the Data Store and Administration GUI, via unspecified vectors related to the utconfig component of the Server Software and the uttscadm component of the Windows Connector.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sun | Ray Server Software | 3.0 |
| Sun | Ray Server Software | 3.1 |
| Sun | Ray Server Software | 4.0 |
| Sun | Ray Windows Connector | 1.1 |
| Sun | Ray Windows Connector | 2.0 |
| Sun | Ray Server Software | 3.1.1 |
References
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-127556-03-1Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-127556-03-1Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-5423?
How severe is CVE-2008-5423?
How do I fix CVE-2008-5423?
Are you affected by CVE-2008-5423?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
