7.5

CVE-2007-1681

Format string vulnerability in libwebconsole_services.so in Sun Java Web Console 2.2.2 through 2.2.5 allows remote attackers to cause a denial of service (application crash), obtain sensitive information, and possibly execute arbitrary code via unspecified vectors during a failed login attempt, related to syslog.

Data is provided by the National Vulnerability Database (NVD)
SunJava Web Console Version2.2.2 Editionx86
SunJava Web Console Version2.2.3 Editionx86
SunJava Web Console Version2.2.4 Editionx86
SunJava Web Console Version2.2.5 Editionx86
SunSolaris Version10.0 Editionx86
SunSolaris Version10.0 Updatehw2
SunJava Web Console Version2.2.2 Editionx86
SunJava Web Console Version2.2.3 Editionx86
SunJava Web Console Version2.2.4 Editionx86
SunJava Web Console Version2.2.5 Editionx86
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 5.13% 0.894
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P