9

CVE-2008-4722

Unspecified vulnerability in Sun Integrated Lights-Out Manager (ILOM) 2.0.1.5 through 2.0.4.26 allows remote authenticated users to (1) access the service processor (SP) and cause a denial of service (shutdown or reboot), or (2) access the host operating system and have an unspecified impact, via unknown vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SunBlade 8000 Modular System Version <= 2.1.1
SunBlade 8000p Modular System Version <= 2.1.1
SunBlade T6320 Server Module Version <= 7.1.6
SunBlade X8400 Version <= 2.0.2
SunBlade X8420 Version <= 2.0.2
SunBlade X8440 Version <= 2.0.2
SunBlade X8450 Version <= 2.1
SunFire X2250 Server Version <= sw_1.1
SunFire X4100 Server Version <= sw_1.5.1
SunFire X4100m2 Server Version <= sw_2.1
SunFire X4140 Server Version <= sw_2.1
SunFire X4150 Server Version <= sw_2.0
SunFire X4200 Server Version <= sw_1.5.1
SunFire X4200m2 Server Version <= sw_2.1
SunFire X4240 Server Version <= sw_2.1
SunFire X4250 Server Version <= sw_1.1
SunFire X4440 Server Version <= sw_2.1
SunFire X4450 Server Version <= sw_2.1.0
SunFire X4500 Server Version <= sw_1.5
SunFire X4540 Server Version <= sw_1.0
SunFire X4600 Server Version <= sw_1.4
SunFire X4600m2 Server Version <= sw_2.1.2
SunNetra Update7.1.6 Version <= cp3260_atca_blade_server
SunNetra Update7.1.6 Version <= t5220_server
SunNetra Update7.1.4a Version <= t5440_server
SunNetra X4200m2 Server Version <= sw_2.1
SunNetra X4250 Server Version <= sw_1.1
SunNetra X4450 Version <= sw_1.1
SunSparc Enterprise Server T5120 Version <= 7.1.6
SunSparc Enterprise Server T5140 Version <= 7.1.6
SunSparc Enterprise Server T5220 Version <= 7.1.6
SunSparc Enterprise Server T5240 Version <= 7.1.6
SunSparc Enterprise Server T5440 Version <= 7.1.5b
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.39% 0.785
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.