CVE-2007-4511

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/08/2007
Last modified:
15/10/2018

Description

The Sun Admin Console in Sun Application Server 9.0_0.1 does not apply certain configuration changes persistently, which causes the (1) SSL and (2) SSL_MutualAuth ORB listener services to enable all protocols and ciphers after the services are restarted, possibly allowing remote attackers to bypass intended policy.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sun:java_system_application_server:9.0_0.1:*:*:*:*:*:*:*