5
CVSSv2

CVE-2008-2402

Published: 04/06/2008 Updated: 08/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Admin Server in Sun Java Active Server Pages (ASP) Server prior to 4.0.3 stores sensitive information under the web root with insufficient access control, which allows remote malicious users to read password hashes and configuration data via direct requests for unspecified documents.

Vulnerable Product Search on Vulmon Subscribe to Product

sun java asp server 4.0

sun java asp server