Description
Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
Affected products
- sun / java_system_directory_server6.0 – 6.0
- sun / java_system_directory_server6.1 – 6.1
- sun / java_system_directory_server6.2 – 6.2