{"api_version":"1","generated_at":"2026-07-23T14:29:09+00:00","cve":"CVE-2008-3539","urls":{"html":"https://cve.report/CVE-2008-3539","api":"https://cve.report/api/cve/CVE-2008-3539.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2008-3539","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2008-3539"},"summary":{"title":"CVE-2008-3539","description":"Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in HPSI Active Directory Connector 2.30 and earlier, HPSI SunOne Connector 1.14 and earlier, HPSI eDirectory Connector 1.12 and earlier, HPSI eTrust Connector 1.02 and earlier, HPSI OID Connector 1.02 and earlier, HPSI IBM Tivoli Dir Connector 1.02 and earlier, HPSI TOPSecret Connector 2.22.001 and earlier, HPSI RACF Connector 1.12.001 and earlier, HPSI ACF2 Connector 1.02 and earlier, HPSI OpenLDAP Connector 1.02 and earlier, and HPSI BiDir DirX Connector 1.00.003 and earlier, allows local users to obtain sensitive information via unknown vectors.","state":"PUBLISHED","assigner":"mitre","published_at":"2008-09-11 01:12:57","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.1","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://securitytracker.com/id?1020821","name":"http://securitytracker.com/id?1020821","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Select Identity Connectors Have an Unspecified Flaw That Lets Local Users Obtain Information - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44916","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44916","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2008/2501","name":"http://www.vupen.com/english/advisories/2008/2501","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/4236","name":"http://securityreason.com/securityalert/4236","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityReason - HP OpenView Select Identity Connectors running on","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2","name":"http://marc.info/?l=bugtraq&m=122062779731581&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/31764","name":"http://secunia.com/advisories/31764","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Select Identity Connectors Information Disclosure - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/31024","name":"http://www.securityfocus.com/bid/31024","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"HP OpenView Select Identity Connectors Local Information Disclosure Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2008-3539","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2008-3539","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.02","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_acf2_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.70.003","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_active_directory_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"2.10.002","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_active_directory_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"2.20","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_active_directory_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"2.30","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_active_directory_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.00.003","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_bidir_dirx_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.12","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_edirectory_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.02","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_etrust_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.02","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_oid_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.02","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_openldap_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.12.001","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_racf_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.14","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_sunone_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"2.22.001","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"hpsi_topsecret_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"1","versionEndIncluding":"1.02","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"hp","cpe5":"ibm_tivoli_dir_connector","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"3539","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T09:45:18.481Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"31764","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/31764"},{"name":"hp-hpsi-unspecified-info-disclosure(44916)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44916"},{"name":"4236","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/4236"},{"name":"1020821","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1020821"},{"name":"31024","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/31024"},{"name":"HPSBMA02361","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"},{"name":"ADV-2008-2501","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2008/2501"},{"name":"SSRT080119","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2008-09-04T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in HPSI Active Directory Connector 2.30 and earlier, HPSI SunOne Connector 1.14 and earlier, HPSI eDirectory Connector 1.12 and earlier, HPSI eTrust Connector 1.02 and earlier, HPSI OID Connector 1.02 and earlier, HPSI IBM Tivoli Dir Connector 1.02 and earlier, HPSI TOPSecret Connector 2.22.001 and earlier, HPSI RACF Connector 1.12.001 and earlier, HPSI ACF2 Connector 1.02 and earlier, HPSI OpenLDAP Connector 1.02 and earlier, and HPSI BiDir DirX Connector 1.00.003 and earlier, allows local users to obtain sensitive information via unknown vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-07T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"31764","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/31764"},{"name":"hp-hpsi-unspecified-info-disclosure(44916)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44916"},{"name":"4236","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/4236"},{"name":"1020821","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1020821"},{"name":"31024","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/31024"},{"name":"HPSBMA02361","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"},{"name":"ADV-2008-2501","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2008/2501"},{"name":"SSRT080119","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2008-3539","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in HPSI Active Directory Connector 2.30 and earlier, HPSI SunOne Connector 1.14 and earlier, HPSI eDirectory Connector 1.12 and earlier, HPSI eTrust Connector 1.02 and earlier, HPSI OID Connector 1.02 and earlier, HPSI IBM Tivoli Dir Connector 1.02 and earlier, HPSI TOPSecret Connector 2.22.001 and earlier, HPSI RACF Connector 1.12.001 and earlier, HPSI ACF2 Connector 1.02 and earlier, HPSI OpenLDAP Connector 1.02 and earlier, and HPSI BiDir DirX Connector 1.00.003 and earlier, allows local users to obtain sensitive information via unknown vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"31764","refsource":"SECUNIA","url":"http://secunia.com/advisories/31764"},{"name":"hp-hpsi-unspecified-info-disclosure(44916)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44916"},{"name":"4236","refsource":"SREASON","url":"http://securityreason.com/securityalert/4236"},{"name":"1020821","refsource":"SECTRACK","url":"http://securitytracker.com/id?1020821"},{"name":"31024","refsource":"BID","url":"http://www.securityfocus.com/bid/31024"},{"name":"HPSBMA02361","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"},{"name":"ADV-2008-2501","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2008/2501"},{"name":"SSRT080119","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=122062779731581&w=2"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2008-3539","datePublished":"2008-09-10T15:00:00.000Z","dateReserved":"2008-08-07T00:00:00.000Z","dateUpdated":"2024-08-07T09:45:18.481Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-09-11 01:12:57","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_acf2_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"2ADE02FF-E7E9-421D-BB22-F8F0523042DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_active_directory_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.70.003","matchCriteriaId":"C9ACA531-E06C-4494-8E5D-694433316DBF"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_active_directory_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"2.10.002","matchCriteriaId":"67B9BAB4-4BE9-401B-93CB-1060D9DA58CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_active_directory_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"2.20","matchCriteriaId":"4E963EBC-C8BD-4308-A8E1-1752A9C3636E"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_active_directory_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"2.30","matchCriteriaId":"0AAEE616-803B-4DA6-83BB-F8492242FB0A"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_bidir_dirx_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.00.003","matchCriteriaId":"04BCD03A-532D-4CD1-AD29-10976C3A3CF9"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_edirectory_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.12","matchCriteriaId":"E3338660-1EAE-4B48-9F0C-953D5118E80C"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_etrust_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"5E27C72C-6424-40CB-8917-16171ADCE94F"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_oid_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"87DDF395-56F8-47C3-9BC9-732753264763"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_openldap_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"3BE6B800-0DC9-46C5-BE8C-A9C30C68C5BE"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_racf_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.12.001","matchCriteriaId":"BD712946-8B98-495E-AC83-DA897ED15D46"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_sunone_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.14","matchCriteriaId":"4E61EBB8-B01B-4940-9778-6EC3CC9FEC73"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:hpsi_topsecret_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"2.22.001","matchCriteriaId":"2FE48EC3-A4C7-439A-8719-392652668087"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:ibm_tivoli_dir_connector:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"ECC89FFF-169B-42B5-AB16-577F32C13EC5"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*","matchCriteriaId":"2CF61F35-5905-4BA9-AD7E-7DB261D2F256"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2008","CveId":"3539","Ordinal":"1","Title":"CVE-2008-3539","CVE":"CVE-2008-3539","Year":"2008"},"notes":[{"CveYear":"2008","CveId":"3539","Ordinal":"1","NoteData":"Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in HPSI Active Directory Connector 2.30 and earlier, HPSI SunOne Connector 1.14 and earlier, HPSI eDirectory Connector 1.12 and earlier, HPSI eTrust Connector 1.02 and earlier, HPSI OID Connector 1.02 and earlier, HPSI IBM Tivoli Dir Connector 1.02 and earlier, HPSI TOPSecret Connector 2.22.001 and earlier, HPSI RACF Connector 1.12.001 and earlier, HPSI ACF2 Connector 1.02 and earlier, HPSI OpenLDAP Connector 1.02 and earlier, and HPSI BiDir DirX Connector 1.00.003 and earlier, allows local users to obtain sensitive information via unknown vectors.","Type":"Description","Title":"CVE-2008-3539"},{"CveYear":"2008","CveId":"3539","Ordinal":"2","NoteData":"2008-09-10","Type":"Other","Title":"Published"},{"CveYear":"2008","CveId":"3539","Ordinal":"3","NoteData":"2017-08-07","Type":"Other","Title":"Modified"}]}}}