CVE

Id
14604  
CVE No.
CVE-2005-3398  
Status
Candidate  
Description
The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.  
Phase
Assigned (20051101)  
Votes
None (candidate not yet proposed)  
Comments