Exploit for #VU86 Man-in-the-middle attack in Sun products


Vulnerability identifier: #VU86

Vulnerability risk: Medium

CVSSv3.1: 4.9 [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:F/RL:O/RC:C]

CVE-ID: CVE-2015-4000

CWE-ID: CWE-300

Exploitation vector: Network

Exploits in database: 1

Impact: Data manipulation

Vulnerable software:
HPE Service Manager
Client/Desktop applications / Software for system administration
Oracle Solaris
Operating systems & Components / Operating system
Oracle Directory Server Enterprise Edition
Server applications / Other server solutions
Oracle GlassFish Server
Server applications / Other server solutions
Oracle OpenSSO
Web applications / Remote management & hosting panels
Oracle Traffic Director
Other software / Other software solutions
Sun ONE/iPlanet Web Server
Server applications / Web servers
SPARC Enterprise M3000
Hardware solutions / Firmware
SPARC Enterprise M4000
Hardware solutions / Firmware
SPARC Enterprise M5000
Hardware solutions / Firmware
SPARC Enterprise M8000
Hardware solutions / Firmware
SPARC Enterprise M9000
Hardware solutions / Firmware
Oracle Secure Global Desktop
Client/Desktop applications / Virtualization software

Vendor: Hewlett Packard Enterprise Development LP
Oracle
Sun