cbcvebase.
CVE-2009-1084
published 2009-03-25

CVE-2009-1084: Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not properly restrict access to the System Configuration object, which allows remote authenticated…

PriorityP434medium6.4CVSS 2.0
AVNACLAuNCPIPAN
EPSS
2.56%
83.4th percentile
Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not properly restrict access to the System Configuration object, which allows remote authenticated administrators and possibly remote attackers to have an unspecified impact by modifying this object.

Affected

4 ranges
VendorProductVersion rangeFixed in
sunjava_system_identity_manager
sunjava_system_identity_manager
sunjava_system_identity_manager
sunjava_system_identity_manager
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.