4.3

CVE-2007-5282

Hitachi Cosminexus Agent 03-00 through 03-05, and Cosminexus Library Standard and Web Edition 04-00 and 04-01, might allow remote attackers to cause a denial of service (agent process crash) via invalid data from clients other than Cosminexus Manager.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hitachi ≫ Cosminexus Agent Version 03_00
Hitachi ≫ Cosminexus Agent Version 03_01
Hitachi ≫ Cosminexus Agent Version 03_02
Hitachi ≫ Cosminexus Agent Version 03_03
Hitachi ≫ Cosminexus Agent Version 03_04
Hitachi ≫ Cosminexus Agent Version 03_05
Hitachi ≫ Cosminexus Library Web Version 04_00
Hitachi ≫ Cosminexus Library Web Version 04_01
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.23% 0.649
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://secunia.com/advisories/27074
Vendor Advisory
http://www.hitachi-support.com/security_e/vuls_e/HS07-033_e/index-e.html
http://www.securityfocus.com/bid/25937
http://www.vupen.com/english/advisories/2007/3377
https://exchange.xforce.ibmcloud.com/vulnerabilities/36966