Lucene search

K
cveMitreCVE-2009-0171
HistoryJan 16, 2009 - 9:30 p.m.

CVE-2009-0171

2009-01-1621:30:03
CWE-264
mitre
web.nvd.nist.gov
37
sun
sparc
enterprise
m4000
m5000
server
vulnerability
remote login
root access
nvd
cve-2009-0171

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

High

EPSS

0.006

Percentile

77.9%

The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System Control Facility Unit (aka XSCFU or Service Processor), and have unspecified other impact.

Affected configurations

Nvd
Node
sunsparc_enterprise_serverMatchm4000
OR
sunsparc_enterprise_serverMatchm5000
VendorProductVersionCPE
sunsparc_enterprise_serverm4000cpe:2.3:h:sun:sparc_enterprise_server:m4000:*:*:*:*:*:*:*
sunsparc_enterprise_serverm5000cpe:2.3:h:sun:sparc_enterprise_server:m5000:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

High

EPSS

0.006

Percentile

77.9%

Related for CVE-2009-0171