Summary
The host is running Access Manager or OpenSSO and is prone to unspecified vulnerability.
Impact
Successful exploitation could allow remote attackers to affect confidentiality and integrity via unknown vectors.
Impact Level: System/Application
Solution
Apply the security updates.
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
*****
NOTE: Ignore this warning if above mentioned patch is already applied.
*****
Insight
The flaw is due to unspecified errors in the application, which allow remote attackers to affect confidentiality and integrity via unknown vectors.
Affected
Sun OpenSSO Enterprise version 8.0,
Java System Access Manager version 7.1
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2011-0844, CVE-2011-0847 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:P/A:N
Related Vulnerabilities
- Adobe Reader Cross-Site Scripting & Denial of Service Vulnerabilities (Linux)
- Apple iTunes Tutorials Window Security Bypass Vulnerability (Mac OS X)
- Adobe Flex SDK 'SWF' Files Cross-Site Scripting Vulnerability (Windows)
- Apple Safari Multiple Memory Corruption Vulnerabilities-02 Aug14 (Mac OS X)
- Apache Tomcat Multiple Vulnerabilities - 01 Mar14