René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

102 lines
3.1 KiB
JSON

{
"id": "CVE-2007-3700",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-07-11T23:30:00.000",
"lastModified": "2017-07-29T01:32:29.003",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Sun Java System Access Manager (formerly Java System Identity Server) before 20070710, when the message debug level is configured in the com.iplanet.services.debug.level property in AMConfig.properties, logs cleartext login passwords, which allows local users to gain privileges by reading /var/opt/SUNWam/debug/amAuth."
},
{
"lang": "es",
"value": "Sun Java System Access Manager (formalmente Java System Identity Server) anterior a 20070710, cuando el mensaje de nivel del nivel de depuraci\u00f3n est\u00e1 configurado en la propiedad com.iplanet.services.debug.level en AMConfig.properties, registros en texto plano de contrase\u00f1as, lo cual permite a usuarios locales ganar privilegios leyendo /var/opt/SUNWam/debug/amAuth."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:S/C:P/I:N/A:N",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 1.7
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.1,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sun:java_system_access_manager:*:*:*:*:*:*:*:*",
"matchCriteriaId": "B2402481-C481-4FB6-9415-2504B3B93F7E"
}
]
}
]
}
],
"references": [
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-101918-1",
"source": "cve@mitre.org",
"tags": [
"Patch"
]
},
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-66-200386-1",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/24859",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1018370",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2496",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35339",
"source": "cve@mitre.org"
}
]
}