5
CVSSv2

CVE-2009-4442

Published: 28/12/2009 Updated: 13/06/2010
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 up to and including 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote malicious users to cause a denial of service (connection slot exhaustion) by making multiple connections and performing no operations on these connections, aka Bug Id 6648665.

Vulnerable Product Search on Vulmon Subscribe to Product

sun java system directory server 6.2

sun java system directory server 6.3

sun java system directory server 6.0

sun java system directory server 6.1

sun java system directory server 6.3.1