CVE-2008-5549
 
Severity Score
5.0
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Unspecified vulnerability in the Sun Java Web Console components in Sun Java System Portal Server 7.1 and 7.2 allows remote attackers to access local files and read the product's configuration information via unknown vectors related to "access to secure files by ThemeServlet."
Vulnerabilidad sin especificar en los componentes de Sun Java Web Console en Sun Java System Portal Server v7.1 y v7.2 permite a atacantes remotos acceder a ficheros locales y leer la informaciĆ³n de configuraciĆ³n del producto mediante vectores desconocidos, relacionado a "acceso a ficheros seguros por ThemeServlet".
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2008-12-12 CVE Reserved
- 2008-12-12 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (8)
URL | Tag | Source |
---|---|---|
http://securitytracker.com/id?1021380 | Vdb Entry | |
http://www.securityfocus.com/bid/32770 | Vdb Entry | |
http://www.vupen.com/english/advisories/2008/3408 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/47256 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://sunsolve.sun.com/search/document.do?assetkey=1-21-124301-12-1 | 2017-08-08 | |
http://sunsolve.sun.com/search/document.do?assetkey=1-21-138686-01-1 | 2017-08-08 |
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/33120 | 2017-08-08 | |
http://sunsolve.sun.com/search/document.do?assetkey=1-26-243886-1 | 2017-08-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sun Search vendor "Sun" | Java System Portal Server Search vendor "Sun" for product "Java System Portal Server" | 7.1 Search vendor "Sun" for product "Java System Portal Server" and version "7.1" | - |
Affected
| ||||||
Sun Search vendor "Sun" | Java System Portal Server Search vendor "Sun" for product "Java System Portal Server" | 7.2 Search vendor "Sun" for product "Java System Portal Server" and version "7.2" | - |
Affected
|