Exploit for #VU86 Man-in-the-middle attack in Sun products


Vulnerability identifier: #VU86

Vulnerability risk: Medium

CVSSv4.0: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:A/U:Green]

CVE-ID: CVE-2015-4000

CWE-ID: CWE-300

Exploitation vector: Network

Exploits in database: 1

Vulnerable software:
HPE Service Manager
Client/Desktop applications / Software for system administration
Oracle Solaris
Operating systems & Components / Operating system
Oracle Directory Server Enterprise Edition
Server applications / Other server solutions
Oracle GlassFish Server
Server applications / Other server solutions
Oracle OpenSSO
Web applications / Remote management & hosting panels
Oracle Traffic Director
Other software / Other software solutions
Sun ONE/iPlanet Web Server
Server applications / Web servers
SPARC Enterprise M3000
Hardware solutions / Firmware
SPARC Enterprise M4000
Hardware solutions / Firmware
SPARC Enterprise M5000
Hardware solutions / Firmware
SPARC Enterprise M8000
Hardware solutions / Firmware
SPARC Enterprise M9000
Hardware solutions / Firmware
Oracle Secure Global Desktop
Client/Desktop applications / Virtualization software

Vendor: Hewlett Packard Enterprise Development LP
Oracle
Sun