Vulnerability Name: | CVE-2006-0531 (CCN-24423) | ||||||||||||
Assigned: | 2006-02-01 | ||||||||||||
Published: | 2006-02-01 | ||||||||||||
Updated: | 2017-10-11 | ||||||||||||
Summary: | Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level administrator privileges via the amadmin CLI tool. | ||||||||||||
CVSS v3 Severity: | 8.2 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H)
| ||||||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2006-0531 Source: CCN Type: SA18699 Sun Java System Access Manager Administrator Access Weakness Source: SECUNIA Type: Patch, Vendor Advisory 18699 Source: CCN Type: SECTRACK ID: 1015567 Sun Java System Access Manager May Let Local Users Obtain Elevated Privileges Source: SECTRACK Type: UNKNOWN 1015567 Source: CCN Type: Sun Alert ID: 102140 Security Vulnerability in Sun Java System Access Manager May Allow Administrator Access to Users Logged in As Root Source: SUNALERT Type: UNKNOWN 102140 Source: CCN Type: OSVDB ID: 22914 Sun Java System Access Manager Administrator amadmin Local Privilege Escalation Source: BID Type: UNKNOWN 16474 Source: CCN Type: BID-16474 Sun Java System Access Manager Local Authentication Bypass Vulnerability Source: VUPEN Type: UNKNOWN ADV-2006-0430 Source: XF Type: UNKNOWN sun-jsam-admin-access(24423) Source: XF Type: UNKNOWN sun-jsam-admin-access(24423) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:360 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:755 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |