CVE-2009-1078: Medium severity Sun Java System Identity Manager vulnerability
Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the expected privilege requirements for (1) deleting audit policies and (2) modifying workflows, which allows remote authenticated users to have an unspecified impact.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1078?
CVE-2009-1078 has been identified as a moderate severity vulnerability due to its impact on privilege requirements.
How do I fix CVE-2009-1078?
To fix CVE-2009-1078, you should upgrade your Sun Java System Identity Manager to a patched version that addresses these privilege issues.
What systems are affected by CVE-2009-1078?
CVE-2009-1078 affects Sun Java System Identity Manager versions 7.0 through 8.0.
What impact does CVE-2009-1078 have on security?
CVE-2009-1078 allows remote authenticated users to delete audit policies and modify workflows without appropriate permissions, potentially compromising system integrity.
Is CVE-2009-1078 exploitable remotely?
Yes, CVE-2009-1078 can be exploited by remote authenticated users, allowing them to perform unauthorized actions.