Lucene search

K
cvelistMitreCVELIST:CVE-2009-1074
HistoryMar 25, 2009 - 3:00 p.m.

CVE-2009-1074

2009-03-2515:00:00
mitre
www.cve.org
5
sun java system
identity manager
ssl
vulnerability
remote attackers
sensitive information
sniffing
network

AI Score

6.2

Confidence

Low

EPSS

0.004

Percentile

73.7%

Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not use SSL in all expected circumstances, which makes it easier for remote attackers to obtain sensitive information by sniffing the network, related to β€œssl termination devices” and lack of support for relative URLs.

AI Score

6.2

Confidence

Low

EPSS

0.004

Percentile

73.7%

Related for CVELIST:CVE-2009-1074