First published: Thu Dec 20 2007(Updated: )
The Oracle database component in Sun Management Center (Sun MC) 3.6.1, 3.6, and 3.5 Update 1 has a default account, which allows remote attackers to obtain database access and execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun SunOS | =5.8 | |
Sun Management\+center | =3.5_update_1 | |
Sun Management\+center | =3.6 | |
Sun Management\+center | =3.6.1 | |
Sun SunOS | =5.9 | |
Sun SunOS | =5.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6480 is considered high severity due to the potential for remote code execution through default credentials.
To fix CVE-2007-6480, change the default account credentials and apply the latest patches for Sun Management Center.
CVE-2007-6480 affects Sun Management Center versions 3.5 Update 1, 3.6, and 3.6.1.
CVE-2007-6480 is a remote code execution vulnerability caused by default account settings in Sun Management Center.
Organizations using the affected versions of Sun Management Center are at risk due to the vulnerability in their database component.