First published: Thu Jan 25 2007(Updated: )
cgi-bin/main in Sun Ray Server Software 2.0 and 3.0 before 20070123 allows local users to obtain the utadmin password by reading a web server's log file, or by conducting a different, unspecified local attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Sun Ray Software | =3.0 | |
Oracle Sun Ray Software | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0482 has a moderate severity rating as it allows local users to obtain sensitive information.
To fix CVE-2007-0482, ensure you update to the latest version of the Sun Ray Server Software that addresses this vulnerability.
CVE-2007-0482 affects Sun Ray Server Software versions 2.0 and 3.0 prior to 20070123.
Local users of Sun Ray Server Software versions 2.0 and 3.0 prior to 20070123 are impacted by CVE-2007-0482.
CVE-2007-0482 can be exploited by local users through unauthorized access to web server log files or other unspecified local attacks.