Unrated severityNVD Advisory· Published Nov 3, 2006· Updated Jun 16, 2026
CVE-2006-5654
CVE-2006-5654
Description
Unspecified vulnerability in the Network Security Services (NSS) in Sun Java System Web Server 6.0 before SP 10 and ONE Application Server 7 before Update 3, when SSLv2 is enabled, allows remote authenticated users to cause a denial of service (application crash) via unspecified vectors. NOTE: due to lack of details from the vendor, it is unclear whether this is related to vector 1 in CVE-2006-5201 or CVE-2006-3127.
Affected products
4<6.0 SP10+ 1 more
- (no CPE)range: <6.0 SP10
- cpe:2.3:a:sun:java_system_web_server:6.0:sp9:*:*:*:*:*:*
<7 Update 3+ 1 more
- (no CPE)range: <7 Update 3
- cpe:2.3:a:sun:one_application_server:*:update_2:*:*:*:*:*:*range: <=7.0
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.