Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a direct request.
| Software | From | Fixed in |
|---|---|---|
| sun / solaris_answerbook2 | 1.4 | 1.4.x |
| sun / solaris_answerbook2 | 1.4.1 | 1.4.1.x |
| sun / solaris_answerbook2 | 1.2 | 1.2.x |
| sun / solaris_answerbook2 | 1.4.2 | 1.4.2.x |
| sun / solaris_answerbook2 | 1.3 | 1.3.x |