7.5

CVE-2008-5422

Sun Sun Ray Server Software 3.1 through 4.0 does not properly restrict access, which allows remote attackers to discover the Sun Ray administration password, and obtain admin access to the Data Store and Administration GUI, via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
SunRay Server Software Version3.0 Editionsparc
   SunSolaris Version8 Editionsparc
   SunSolaris Version9 Editionsparc
   SunSolaris Version10 Editionsparc
SunRay Server Software Version3.1 Editionsparc
   SunSolaris Version8 Editionsparc
   SunSolaris Version9 Editionsparc
   SunSolaris Version10 Editionsparc
SunRay Server Software Version4.0 Editionsparc
   SunSolaris Version8 Editionsparc
   SunSolaris Version9 Editionsparc
   SunSolaris Version10 Editionsparc
SunRay Server Software Version3.1 Editionx86
   SunSolaris Version10 Editionx86
SunRay Server Software Version4.0 Editionx86
   SunSolaris Version10 Editionx86
SunRay Server Software Version3.1.1 Editionlinux
   NovellSuse Linux Enterprise Server Version9
   RedhatEnterprise Linux Version4 Editionadvanced_server
SunRay Server Software Version4.0 Editionlinux
   NovellSuse Linux Enterprise Server Version9
   RedhatEnterprise Linux Version4 Editionadvanced_server
SunRay Server Software Version3.0 Editionlinux
   SunJava Desktop System Version2.0
   NovellSuse Linux Enterprise Server Version8
   RedhatEnterprise Linux Version3 Editionadvanced_server
SunRay Server Software Version3.1 Editionlinux
   SunJava Desktop System Version2.0
   NovellSuse Linux Enterprise Server Version8
   RedhatEnterprise Linux Version3 Editionadvanced_server
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.33% 0.793
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P