Vulnerability Name: | CVE-2010-0311 (CCN-55572) | ||||||||
Assigned: | 2010-01-11 | ||||||||
Published: | 2010-01-11 | ||||||||
Updated: | 2017-08-17 | ||||||||
Summary: | Unspecified vulnerability in Sun Java System Identity Manager (aka IdM) 8.1.0.5 and 8.1.0.6, when Sun Java System Access Manager, OpenSSO Enterprise 8.0, or IBM Tivoli Access Manager is used, allows remote attackers to obtain administrative access via unknown vectors. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Bypass Security | ||||||||
References: | Source: MITRE Type: CNA CVE-2010-0311 Source: OSVDB Type: UNKNOWN 61658 Source: CCN Type: SA38130 Sun Java System Identity Manager Security Bypass Source: SECUNIA Type: Vendor Advisory 38130 Source: CCN Type: SECTRACK ID: 1023447 Sun Java System Identity Manager Flaw Grants Remote Users Administrative Access Source: SECTRACK Type: UNKNOWN 1023447 Source: CONFIRM Type: Patch http://sunsolve.sun.com/search/document.do?assetkey=1-21-141642-08-1 Source: CCN Type: Sun Alert ID: 275010 Security Vulnerability in Identity Manager 8.1.0.5 and 8.1.0.6 Configured with Sun Java System Access Manager, OpenSSO Enterprise 8.0 or IBM Tivoli Access Manager Source: SUNALERT Type: Vendor Advisory 275010 Source: CCN Type: OSVDB ID: 61658 Sun Java System Identity Manager Unspecified Admin Authentication Bypass Source: BID Type: UNKNOWN 37755 Source: CCN Type: BID-37755 Sun Java System Identity Manager Privilege Escalation Vulnerability Source: VUPEN Type: Vendor Advisory ADV-2010-0108 Source: XF Type: UNKNOWN jsim-unspecified-security-bypass(55572) Source: XF Type: UNKNOWN jsim-unspecified-security-bypass(55572) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |