PT-2017-8737 · Oracle · Solaris Cluster

Published

2017-04-24

·

Updated

2017-07-11

·

CVE-2016-5551

CVSS v3.1

2.8

Low

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Sun Systems Products Suite versions 4.3
Description The issue allows an unauthenticated attacker with logon to the infrastructure where Solaris Cluster executes to compromise Solaris Cluster, resulting in unauthorized read access to a subset of Solaris Cluster accessible data. Successful attacks require human interaction from a person other than the attacker.
Recommendations For version 4.3, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-5551

Affected Products

Solaris Cluster