CVE-2011-0902

Sun Microsystems SunScreen Firewall <5.9 - RCE

Title source: llm
STIX 2.1

Description

Multiple untrusted search path vulnerabilities in the Java Service in Sun Microsystems SunScreen Firewall on SunOS 5.9 allow local users to execute arbitrary code via a modified (1) PATH or (2) LD_LIBRARY_PATH environment variable.

Exploits (1)

exploitdb WORKING POC
by kingcope · textremotemultiple
https://www.exploit-db.com/exploits/16041

References (3)

Core 3
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/16041
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/45963
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/64887

Scores

EPSS 0.0111
EPSS Percentile 78.2%

Details

Status published
Products (1)
oracle/sun_microsystems_sunscreen_firewall
Published Feb 07, 2011
Tracked Since Feb 18, 2026