The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-11-01T11:00:00
Updated: 2024-08-07T23:10:08.638Z
Reserved: 2005-11-01T00:00:00
Link: CVE-2005-3398
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-11-01T12:47:00.000
Modified: 2024-11-21T00:01:47.673
Link: CVE-2005-3398
Redhat
No data.