4.3

CVE-2007-5282

Hitachi Cosminexus Agent 03-00 through 03-05, and Cosminexus Library Standard and Web Edition 04-00 and 04-01, might allow remote attackers to cause a denial of service (agent process crash) via invalid data from clients other than Cosminexus Manager.

Data is provided by the National Vulnerability Database (NVD)
HitachiCosminexus Agent Version03_00
HitachiCosminexus Agent Version03_01
HitachiCosminexus Agent Version03_02
HitachiCosminexus Agent Version03_03
HitachiCosminexus Agent Version03_04
HitachiCosminexus Agent Version03_05
HitachiCosminexus Library Web Version04_00
HitachiCosminexus Library Web Version04_01
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.63% 0.678
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.