CVE-2008-5685
Summary
| CVE | CVE-2008-5685 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-12-19 17:30:03 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to access the System Controller (SC), the system console, and possibly the host OS, and cause a denial of service (shutdown or reboot), via spoofed IP packets. |
Risk And Classification
Primary CVSS: v2.0 10 from [email protected]
AV:N/AC:L/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-noinfo | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Sun | Netra | 1280 | All | All | All |
| Hardware | Sun | Netra | 1290 | All | All | All |
| Hardware | Sun | Scapp | 5.18 | All | All | All |
| Hardware | Sun | Scapp | 5.19 | All | All | All |
| Hardware | Sun | Scapp | 5.20.0 | All | All | All |
| Hardware | Sun | Scapp | 5.20.1 | All | All | All |
| Hardware | Sun | Scapp | 5.20.10 | All | All | All |
| Hardware | Sun | Scapp | 5.20.2 | All | All | All |
| Hardware | Sun | Scapp | 5.20.3 | All | All | All |
| Hardware | Sun | Scapp | 5.20.4 | All | All | All |
| Hardware | Sun | Scapp | 5.20.5 | All | All | All |
| Hardware | Sun | Scapp | 5.20.6 | All | All | All |
| Hardware | Sun | Scapp | 5.20.7 | All | All | All |
| Hardware | Sun | Scapp | 5.20.8 | All | All | All |
| Hardware | Sun | Scapp | 5.20.9 | All | All | All |
| Hardware | Sun | Sun Fire | 3800 | All | All | All |
| Hardware | Sun | Sun Fire | 4800 | All | All | All |
| Hardware | Sun | Sun Fire | 4810 | All | All | All |
| Hardware | Sun | Sun Fire | 6800 | All | All | All |
| Hardware | Sun | Sun Fire | e2900 | All | All | All |
| Hardware | Sun | Sun Fire | e4900 | All | All | All |
| Hardware | Sun | Sun Fire | e6900 | All | All | All |
| Hardware | Sun | Sun Fire | v1280 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| sunsolve.sun.com/search/document.do | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | Patch |
| sunsolve.sun.com/search/document.do | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | |
| Sun Netra / Fire Servers IP Spoofing Vulnerability - Secunia Advisories - Vulnerability Intelligence - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Sun Fire Servers IP Spoofing Security Bypass Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Sun Fire Server IP(7P) Spoofing Flaw Lets Remote Users Gain Access - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| sunsolve.sun.com/search/document.do | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.