Vulnerability Name: | CVE-1999-1527 (CCN-8333) | ||||||||
Assigned: | 1999-11-23 | ||||||||
Published: | 1999-11-23 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Tue, 23 Nov 1999 12:32:00 -0500 NetBeans/ Forte' Java IDE HTTP vulnerability Source: MITRE Type: CNA CVE-1999-1527 Source: BUGTRAQ Type: UNKNOWN 19991123 NetBeans/ Forte' Java IDE HTTP vulnerability Source: CCN Type: OSVDB ID: 115 Sun NetBeans Java IDE HTTP Server IP Restriction Bypass Arbitrary File/Directory Access Source: BID Type: Exploit, Patch, Vendor Advisory 816 Source: CCN Type: BID-816 Sun Java IDE Webserver IP Restriction Failure Vulnerability Source: XF Type: UNKNOWN sun-java-ide-http-access(8333) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |