Vulnerability CVE-2008-3539


Published: 2008-09-10   Modified: 2012-02-12

Description:
Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in HPSI Active Directory Connector 2.30 and earlier, HPSI SunOne Connector 1.14 and earlier, HPSI eDirectory Connector 1.12 and earlier, HPSI eTrust Connector 1.02 and earlier, HPSI OID Connector 1.02 and earlier, HPSI IBM Tivoli Dir Connector 1.02 and earlier, HPSI TOPSecret Connector 2.22.001 and earlier, HPSI RACF Connector 1.12.001 and earlier, HPSI ACF2 Connector 1.02 and earlier, HPSI OpenLDAP Connector 1.02 and earlier, and HPSI BiDir DirX Connector 1.00.003 and earlier, allows local users to obtain sensitive information via unknown vectors.

See advisories in our WLB2 database:
Topic
Author
Date
Med.
HP OpenView Select Identity Connectors running on
security-alert
13.09.2008

Type:

CWE-200

(Information Exposure)

CVSS2 => (AV:L/AC:L/Au:N/C:P/I:N/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
2.1/10
2.9/10
3.9/10
Exploit range
Attack complexity
Authentication
Local
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
None
Affected software
HP -> Hpsi acf2 connector 
HP -> Hpsi active directory connector 
HP -> Hpsi bidir dirx connector 
HP -> Hpsi edirectory connector 
HP -> Hpsi etrust connector 
HP -> Hpsi oid connector 
HP -> Hpsi openldap connector 
HP -> Hpsi racf connector 
HP -> Hpsi sunone connector 
HP -> Hpsi topsecret connector 
HP -> Ibm tivoli dir connector 

 References:
http://marc.info/?l=bugtraq&m=122062779731581&w=2
http://marc.info/?l=bugtraq&m=122062779731581&w=2
http://xforce.iss.net/xforce/xfdb/44916
http://www.vupen.com/english/advisories/2008/2501
http://www.securityfocus.com/bid/31024
http://securitytracker.com/id?1020821
http://securityreason.com/securityalert/4236
http://secunia.com/advisories/31764

Copyright 2024, cxsecurity.com

 

Back to Top