Lucene search

K
nvd[email protected]NVD:CVE-2010-2632
HistoryJan 19, 2011 - 4:00 p.m.

CVE-2010-2632

2011-01-1916:00:02
web.nvd.nist.gov

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

7.2 High

AI Score

Confidence

High

0.323 Low

EPSS

Percentile

97.0%

Unspecified vulnerability in the FTP Server in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from a reliable researcher that this is an issue in the glob implementation in libc that allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames.

Affected configurations

NVD
Node
sunsunosMatch5.8
OR
sunsunosMatch5.9
OR
sunsunosMatch5.10
OR
sunsunosMatch5.11express

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

7.2 High

AI Score

Confidence

High

0.323 Low

EPSS

Percentile

97.0%