Lucene search

K
cve[email protected]CVE-2007-5281
HistoryOct 09, 2007 - 12:17 a.m.

CVE-2007-5281

2007-10-0900:17:00
CWE-20
web.nvd.nist.gov
22
cve-2007-5281
hitachi cosminexus
jsse
ssl/tls
denial of service

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.449 Medium

EPSS

Percentile

97.4%

The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer’s Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service via certain SSL/TLS handshake requests. NOTE: this may be the same as CVE-2007-3698.

Affected configurations

NVD
Node
hitachiucosminexus_application_server_enterpriseMatch07_50
OR
hitachiucosminexus_application_server_standardMatch7_50
OR
hitachiucosminexus_clientMatch07_50
OR
hitachiucosminexus_developer_professionalMatch07_50
OR
hitachiucosminexus_developer_standardMatch07_50
OR
hitachiucosminexus_operatorMatch07_50
OR
hitachiucosminexus_service_architectMatch7_50
OR
hitachiucosminexus_service_platformMatch7_50

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.449 Medium

EPSS

Percentile

97.4%