4.3
CVSSv2

CVE-2009-2713

Published: 07/08/2009 Updated: 15/08/2009
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The CDCServlet component in Sun Java System Access Manager 7.0 2005Q4 and 7.1, when Cross Domain Single Sign On (CDSSO) is enabled, does not ensure that "policy advice" is presented to the correct client, which allows remote malicious users to obtain sensitive information via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sun java system access manager 7_2005q4

sun java system access manager 7.1

sun java system access manager 6.3_2005q1

sun java system access manager 7.0_2005q4

sun java system web server 7.0