Vulnerability Details CVE-2008-1995
Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 80.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-1995
-
cpe:2.3:a:sun:java_system_directory_server:6.0
-
cpe:2.3:a:sun:java_system_directory_server:6.1
-
cpe:2.3:a:sun:java_system_directory_server:6.2