5

CVE-2009-4442

Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote attackers to cause a denial of service (connection slot exhaustion) by making multiple connections and performing no operations on these connections, aka Bug Id 6648665.

Data is provided by the National Vulnerability Database (NVD)
SunJava System Directory Server Version6.0 Editionenterprise
SunJava System Directory Server Version6.1 Updateenterprise
SunJava System Directory Server Version6.2 Updateenterprise
SunJava System Directory Server Version6.3 Updateenterprise
SunJava System Directory Server Version6.3.1 Updateenterprise
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.33% 0.781
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P