CVE-2009-1084

Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not properly restrict access to the System Configuration object, which allows remote authenticated administrators and possibly remote attackers to have an unspecified impact by modifying this object.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:java_system_identity_manager:7.0:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:7.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:7.1.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-03-25 15:30

Updated : 2023-12-10 10:51


NVD link : CVE-2009-1084

Mitre link : CVE-2009-1084

CVE.ORG link : CVE-2009-1084


JSON object : View

Products Affected

sun

  • java_system_identity_manager
CWE
CWE-264

Permissions, Privileges, and Access Controls