Vulnerability Details CVE-2008-1995
Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.3%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-1995
-
cpe:2.3:a:sun:java_system_directory_server:6.0
-
cpe:2.3:a:sun:java_system_directory_server:6.1
-
cpe:2.3:a:sun:java_system_directory_server:6.2