[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2009-2712Date: (C)2009-08-07   (M)2023-12-22


Sun Java System Access Manager 6.3 2005Q1, 7.0 2005Q4, and 7.1; and OpenSSO Enterprise 8.0; when AMConfig.properties enables the debug flag, allows local users to discover cleartext passwords by reading debug files.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 2.1
Exploit Score: 3.9
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: NONE
  
Reference:
SUNALERT-256668
BID-35963
SECUNIA-36169
OSVDB-56815
ADV-2009-2177
http://sunsolve.sun.com/search/document.do?assetkey=1-21-119465-16-1

CPE    1
cpe:/a:sun:java_system_web_server:7.0::hp_ux
CWE    1
CWE-264

© SecPod Technologies