Vulnerabilities (CVE)

Filtered by vendor Sun Subscribe
Filtered by product Sparc Enterprise Server
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-0171 1 Sun 1 Sparc Enterprise Server 2024-11-21 10.0 HIGH N/A
The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System Control Facility Unit (aka XSCFU or Service Processor), and have unspecified other impact.
CVE-2008-1369 1 Sun 2 Sparc Enterprise Server, Sunos 2024-11-21 10.0 HIGH N/A
A certain incorrect Sun Solaris 10 image on SPARC Enterprise T5120 and T5220 servers has /etc/default/login and /etc/ssh/sshd_config files that configure root logins in a manner unintended by the vendor, which allows remote attackers to gain privileges via unspecified vectors.
CVE-2007-6360 1 Sun 2 Extended System Control Facility Xcp 1040, Sparc Enterprise Server 2024-11-21 7.8 HIGH N/A
Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 on SPARC Enterprise M4000, M5000, M8000, and M9000 servers allows remote attackers to cause a denial of service (reboot) via (1) telnet, (2) ssh, or (3) http network traffic that triggers memory exhaustion.