CVE-2008-3425

Sun Java System Web Server 7.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the Sun Java System Web Server 7.0 plugin in Sun N1 Service Provisioning System (SPS) 5.2 and 6.0 allows remote authenticated SPS users to gain administrative access to the web server via unknown attack vectors.

References (6)

Core 6
Core References
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-239566-1
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31301
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1020608
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2261/references
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/44114
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/30451

Scores

EPSS 0.0114
EPSS Percentile 78.7%

Details

CWE
CWE-287
Status published
Products (3)
sun/java_system_web_server_plugin 7.0
sun/n1_service_provisioning_system 5.2
sun/n1_service_provisioning_system 6.0
Published Jul 31, 2008
Tracked Since Feb 18, 2026