5
CVE-2009-4442
- EPSS 1.33%
- Published 28.12.2009 19:30:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote attackers to cause a denial of service (connection slot exhaustion) by making multiple connections and performing no operations on these connections, aka Bug Id 6648665.
Data is provided by the National Vulnerability Database (NVD)
Sun ≫ Java System Directory Server Version6.0 Editionenterprise
Sun ≫ Java System Directory Server Version6.1 Updateenterprise
Sun ≫ Java System Directory Server Version6.2 Updateenterprise
Sun ≫ Java System Directory Server Version6.3 Updateenterprise
Sun ≫ Java System Directory Server Version6.3.1 Updateenterprise
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.33% | 0.781 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|