The VirtualBox 2.0.8 and 2.0.10 web service in Sun Virtual Desktop Infrastructure (VDI) 3.0 does not require authentication, which allows remote attackers to obtain unspecified access via vectors involving requests to an Apache HTTP Server.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2009-11-10 00:30
Updated : 2017-08-17 01:31
NVD link : CVE-2009-3923
Mitre link : CVE-2009-3923
CVE.ORG link : CVE-2009-3923
JSON object : View
Products Affected
sun
- virtualbox
- virtual_desktop_infrastructure
CWE
CWE-287
Improper Authentication