Vulnerability Name: | CVE-2008-4747 (CCN-46074) | ||||||||
Assigned: | 2008-10-23 | ||||||||
Published: | 2008-10-23 | ||||||||
Updated: | 2017-08-08 | ||||||||
Summary: | Unspecified vulnerability in the search feature in Sun Java System LDAP JDK before 4.20 allows context-dependent attackers to obtain sensitive information via unknown attack vectors related to the LDAP JDK library. | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N) 1.6 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
1.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-200 | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2008-4747 Source: CCN Type: SA32327 Sun Java System LDAP JDK Information Disclosure Vulnerability Source: SECUNIA Type: Vendor Advisory 32327 Source: CCN Type: SECTRACK ID: 1021103 Sun Java System Access Manager Bug in LDAP JDK Search Function Lets Local Users Obtain Information Source: SUNALERT Type: Patch 242246 Source: CCN Type: Sun Alert ID: 242246 Security Vulnerability in the Search Feature of the Sun Java System LDAP JDK Source: CCN Type: ASA-2008-433 Security Vulnerability in the Search Feature of the Sun Java System LDAP JDK (Sun 242246) Source: CCN Type: OSVDB ID: 49336 Sun Java System LDAP JDK Unspecified Information Disclosure Source: BID Type: UNKNOWN 31905 Source: CCN Type: BID-31905 Sun Java System LDAP JDK Search Feature Information Disclosure Vulnerability Source: SECTRACK Type: UNKNOWN 1021103 Source: VUPEN Type: UNKNOWN ADV-2008-2916 Source: XF Type: UNKNOWN javasystem-ldapjdk-search-info-disclosure(46074) Source: XF Type: UNKNOWN javasystem-ldapjdk-search-info-disclosure(46074) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |