>> Sun SPARC Enterprise T5120/T5220 Insecure Configuration Vulnerability
Title : Sun SPARC Enterprise T5120/T5220 Insecure Configuration Vulnerability VUPEN ID : VUPEN/ADV-2008-0810 CVE ID : CVE-2008-1369
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-03-10
Technical Description
A vulnerability has been identified in Sun SPARC Enterprise T5120 and T5220 servers, which could be exploited by remote attackers to take complete control of an affacted system. This issue affects certain servers that have been mistakenly shipped with insecure factory settings in the pre-installed Solaris 10 OS image, which may allow a local or remote user to be able to execute arbitrary commands with the privileges of the root (uid 0) user.