CVE-2008-1995

Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:java_system_directory_server:6.0:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_directory_server:6.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_directory_server:6.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-04-28 17:05

Updated : 2024-02-28 11:21


NVD link : CVE-2008-1995

Mitre link : CVE-2008-1995

CVE.ORG link : CVE-2008-1995


JSON object : View

Products Affected

sun

  • java_system_directory_server
CWE
CWE-264

Permissions, Privileges, and Access Controls