5
CVE-2007-5281
- EPSS 2.2%
- Veröffentlicht 09.10.2007 00:17:00
- Zuletzt bearbeitet 16.06.2026 22:45:49
- Erkennungen
The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service via certain SSL/TLS handshake requests. NOTE: this may be the same as CVE-2007-3698.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hitachi ≫ Ucosminexus Application Server Enterprise Version 07_50
Hitachi ≫ Ucosminexus Application Server Standard Version 7_50
Hitachi ≫ Ucosminexus Client Version 07_50
Hitachi ≫ Ucosminexus Developer Professional Version 07_50
Hitachi ≫ Ucosminexus Developer Standard Version 07_50
Hitachi ≫ Ucosminexus Operator Version 07_50
Hitachi ≫ Ucosminexus Service Architect Version 7_50
Hitachi ≫ Ucosminexus Service Platform Version 7_50
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.2% | 0.802 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://secunia.com/advisories/27075
http://www.hitachi-support.com/security_e/vuls_e/HS07-031_e/index-e.html
http://www.securityfocus.com/bid/25935
http://www.vupen.com/english/advisories/2007/3375
https://exchange.xforce.ibmcloud.com/vulnerabilities/36965