Privilege Escalation Vulnerability in Sun Java System Identity Manager Products
CVE-2009-1078

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
25 March 2009

Summary

The Sun Java System Identity Manager versions 7.0 through 8.0 lack proper enforcement of privilege requirements, enabling remote authenticated users to delete audit policies and modify workflows. This oversight may lead to unauthorized actions within the application's environment, potentially affecting system integrity and security.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.