It has been reported that Sun Java System Portal Server is affected by a privilege escalation vulnerability in the calendar server when an authentication proxy is used. This issue is due to a failure of the application to validate access credentials. This issue will allow an attacker to gain administrator access to the affected calendar server, allowing them to create, modify and delete users as well as calendar information. Other attacks are also possible.
It has been reported that Sun Java System Portal Server is affected by a privilege escalation vulnerability in the calendar server when an authentication proxy is used. This issue is due to a failure of the application to validate access credentials. This issue will allow an attacker to gain administrator access to the affected calendar server, allowing them to create, modify and delete users as well as calendar information. Other attacks are also possible.