5
CVE-2007-5281
- EPSS 0.89%
- Published 09.10.2007 00:17:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service via certain SSL/TLS handshake requests. NOTE: this may be the same as CVE-2007-3698.
Data is provided by the National Vulnerability Database (NVD)
Hitachi ≫ Ucosminexus Application Server Enterprise Version07_50
Hitachi ≫ Ucosminexus Application Server Standard Version7_50
Hitachi ≫ Ucosminexus Client Version07_50
Hitachi ≫ Ucosminexus Developer Professional Version07_50
Hitachi ≫ Ucosminexus Developer Standard Version07_50
Hitachi ≫ Ucosminexus Operator Version07_50
Hitachi ≫ Ucosminexus Service Architect Version7_50
Hitachi ≫ Ucosminexus Service Platform Version7_50
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.89% | 0.734 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.