CVE-2001-0077: Medium severity Sun Cluster vulnerability
The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system logs and cluster configurations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0077?
CVE-2001-0077 is considered to have a high severity due to the lack of authentication in the clustmon service, allowing remote attackers to access sensitive information.
How do I fix CVE-2001-0077?
To fix CVE-2001-0077, you should implement authentication mechanisms for the clustmon service or upgrade to a version of Sun Cluster that addresses this vulnerability.
What type of information can be exposed by CVE-2001-0077?
CVE-2001-0077 can expose sensitive information such as system logs and cluster configurations.
Which versions of the Sun Cluster are affected by CVE-2001-0077?
Sun Cluster 2.0 is specifically affected by CVE-2001-0077.
Is there a workaround for CVE-2001-0077?
A practical workaround for CVE-2001-0077 is to restrict network access to the clustmon service until proper authentication is configured.