Lucene search

K
cveMitreCVE-2010-0273
HistoryJan 08, 2010 - 5:30 p.m.

CVE-2010-0273

2010-01-0817:30:02
mitre
web.nvd.nist.gov
35
cve-2010-0273
vulnerability
sun java system web server
linux
remote attackers
arbitrary code
tcp port 80
vulndisco
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

Low

EPSS

0.009

Percentile

83.1%

Unspecified vulnerability in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to execute arbitrary code by sending a process memory address and crafted data to TCP port 80, as demonstrated by the vd_sjws2 module in VulnDisco. NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Affected configurations

Nvd
Node
sunjava_system_web_serverMatch7.0update_6linux
VendorProductVersionCPE
sunjava_system_web_server7.0cpe:2.3:a:sun:java_system_web_server:7.0:update_6:linux:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

Low

EPSS

0.009

Percentile

83.1%

Related for CVE-2010-0273