Vulnerabilities > SUN > Sparc Enterprise Server > Critical

DATE CVE VULNERABILITY TITLE RISK
2009-01-16 CVE-2009-0171 Permissions, Privileges, and Access Controls vulnerability in SUN Sparc Enterprise Server M4000/M5000
The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System Control Facility Unit (aka XSCFU or Service Processor), and have unspecified other impact.
network
low complexity
sun CWE-264
critical
10.0
2008-03-18 CVE-2008-1369 Permissions, Privileges, and Access Controls vulnerability in SUN Sunos 5.10
A certain incorrect Sun Solaris 10 image on SPARC Enterprise T5120 and T5220 servers has /etc/default/login and /etc/ssh/sshd_config files that configure root logins in a manner unintended by the vendor, which allows remote attackers to gain privileges via unspecified vectors.
network
low complexity
sun CWE-264
critical
10.0