CVE-2008-1286

high

Description

Unspecified vulnerability in Sun Java Web Console 3.0.2, 3.0.3, and 3.0.4 allows remote attackers to bypass intended access restrictions and determine the existence of files or directories via unknown vectors.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/41069

http://www.vupen.com/english/advisories/2008/0806/references

http://www.securitytracker.com/id?1019574

http://www.securityfocus.com/bid/28155

http://sunsolve.sun.com/search/document.do?assetkey=1-26-231526-1

http://secunia.com/advisories/29290

Details

Source: Mitre, NVD

Published: 2008-03-11

Updated: 2025-04-09

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:N

Severity: High

CVSS v3

Base Score: 8.2

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N

Severity: High

EPSS

EPSS: 0.00454