CVE-2008-2406

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
04/06/2008
Last modified:
09/04/2025

Description

The administration application server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to bypass authentication via direct requests on TCP port 5102.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sun:java_asp_server:*:*:*:*:*:*:*:* 4.0.2 (including)
cpe:2.3:a:sun:java_asp_server:4.0:*:*:*:*:*:*:*