Solaris 10 (x86) : 148166-02 (deprecated)

medium Nessus Plugin ID 57681

Synopsis

This plugin has been deprecated.

Description

Vulnerability in the Solaris component of Oracle Sun Products Suite (subcomponent: Password Policy). Supported versions that are affected are 8, 9, 10 and 11. Easily exploitable vulnerability requiring logon to Operating System plus additional login/authentication to component or subcomponent. Successful attack of this vulnerability can escalate attacker privileges resulting in unauthorized update, insert or delete access to some Solaris accessible data as well as read access to a subset of Solaris accessible data and ability to cause a partial denial of service (partial DOS) of Solaris.

This plugin has been deprecated and either replaced with individual 148166 patch-revision plugins, or deemed non-security related.

See Also

https://getupdates.oracle.com/readme/148166-02

Plugin Details

Severity: Medium

ID: 57681

File Name: solaris10_x86_148166.nasl

Version: 1.8

Type: local

Published: 1/25/2012

Updated: 1/14/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.7

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Vector: CVSS2#AV:L/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Information

CPE: cpe:/o:sun:solaris

Required KB Items: Host/local_checks_enabled, Host/Solaris/showrev

Patch Publication Date: 1/23/2012

Reference Information

CVE: CVE-2012-1684