2 results (0.005 seconds)

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 0

Sun Ray Server Software (SRSS) 1.3 and 2.0 for Solaris 2.6, 7 and 8 does not properly detect a smartcard removal when the card is quickly removed, reinserted, and removed again, which could cause a user session to stay logged in and allow local users to gain unauthorized access. Sun Ray Server Software (SRSS) 1.3 y 2.0 de Solaris 2.6, 7 y 8 no detecta adecuadamente la extracción de una smartcard cuando la tarjeta es rápidamente extraida, insertada y extraída de nuevo, lo que podría permitir que una sesión de usuario permanezca abierta y que usuarios locales ganaran acceso no autorizado. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F53922 http://www.kb.cert.org/vuls/id/100780 http://www.securityfocus.com/bid/7457 https://exchange.xforce.ibmcloud.com/vulnerabilities/11905 •

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 0

Sun Ray Server Software (SRSS) 1.3, when Non-Smartcard Mobility (NSCM) is enabled, allows remote attackers to login as another user by running dtlogin from a system that supports the XDMCP client. • http://sunsolve.sun.com/search/document.do?assetkey=1-26-44069-1 http://www.iss.net/security_center/static/9252.php http://www.securityfocus.com/bid/4911 •