CVE-2009-1083
published 2009-03-25CVE-2009-1083: Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in the passwords of user accounts, which…
PriorityP351critical9CVSS 2.0
AVNACLAuSCCICAC
EPSS
3.68%
88.5th percentile
Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in the passwords of user accounts, which allows remote attackers to execute arbitrary commands via vectors involving "resource adapters."
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | java_system_identity_manager | — | — |
| sun | java_system_identity_manager | — | — |
| sun | java_system_identity_manager | — | — |
| sun | java_system_identity_manager | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
http://blogs.sun.com/security/entry/sun_alert_253267_sun_javahttp://secunia.com/advisories/34380http://securitytracker.com/id?1021881http://sunsolve.sun.com/search/document.do?assetkey=1-21-140935-01-1http://sunsolve.sun.com/search/document.do?assetkey=1-66-253267-1http://www.securityfocus.com/bid/34191http://www.vupen.com/english/advisories/2009/0797http://blogs.sun.com/security/entry/sun_alert_253267_sun_javahttp://secunia.com/advisories/34380http://securitytracker.com/id?1021881http://sunsolve.sun.com/search/document.do?assetkey=1-21-140935-01-1http://sunsolve.sun.com/search/document.do?assetkey=1-66-253267-1http://www.securityfocus.com/bid/34191http://www.vupen.com/english/advisories/2009/0797
2009-03-25
Published