CVE-2008-5685
Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to access the System Controller (SC), the system console, and possibly the host OS, and cause a denial of service (shutdown or reboot),…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.65%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to access the System Controller (SC), the system console, and possibly the host OS, and cause a denial of service (shutdown or reboot), via spoofed IP packets.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 2.65% probability · 85th percentile
- CISA KEV
- Not listed
- Affected
- sun/scapp
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/33158Vendor Advisory
- http://securitytracker.com/id?1021392
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-114527-12-1Patch
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-246746-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1019814.1-1
- http://www.securityfocus.com/bid/32805
- http://www.vupen.com/english/advisories/2008/3440
- http://secunia.com/advisories/33158Vendor Advisory
- http://securitytracker.com/id?1021392
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-114527-12-1Patch
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-246746-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1019814.1-1
- http://www.securityfocus.com/bid/32805
- http://www.vupen.com/english/advisories/2008/3440
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.