Vulnerability Name: | CVE-2005-3472 (CCN-22941) | ||||||||
Assigned: | 2005-11-02 | ||||||||
Published: | 2005-11-02 | ||||||||
Updated: | 2011-03-08 | ||||||||
Summary: | Unspecified vulnerability in Sun Java System Communications Express 2005Q1 and 2004Q2 allows local and remote attackers to read sensitive information from configuration files. | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-3472 Source: CCN Type: SA17395 Sun Java System Communications Express Configuration File Disclosure Source: SECUNIA Type: Patch, Vendor Advisory 17395 Source: CCN Type: SECTRACK ID: 1015135 Sun Java System Communications Express Discloses Configuration File to Remote Users Source: SECTRACK Type: UNKNOWN 1015135 Source: CCN Type: Sun Alert ID: 101948 Security Vulnerability in Sun Java System Communications Express Software Source: SUNALERT Type: Patch, Vendor Advisory 101948 Source: OSVDB Type: UNKNOWN 20448 Source: CCN Type: OSVDB ID: 20448 Sun Java System Communications Express Remote Configuration File Disclosure Source: BID Type: UNKNOWN 15271 Source: CCN Type: BID-15271 Sun Java System Communications Express Information Disclosure Vulnerability Source: CCN Type: Sun Java System Communications Express Web site Sun Java System Communications Express Source: VUPEN Type: UNKNOWN ADV-2005-2274 Source: XF Type: UNKNOWN sun-java-config-information-disclosure(22941) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |