Lucene search

K
cveOracleCVE-2009-1010
HistoryApr 15, 2009 - 10:30 a.m.

CVE-2009-1010

2009-04-1510:30:00
oracle
web.nvd.nist.gov
33
cve-2009-1010
outside in technology
oracle
application server
html
confidentiality
integrity
availability

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

AI Score

8

Confidence

High

EPSS

0

Percentile

5.3%

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1008.

Affected configurations

Nvd
Node
ibmwebsphere_portalMatch6.0.0.0
OR
ibmwebsphere_portalMatch6.0.1.0
OR
ibmwebsphere_portalMatch6.1.0.0
OR
ibmwebsphere_portalMatch6.1.5.0
OR
ibmwebsphere_portalMatch7.0.0.0
OR
ibmwebsphere_portalMatch8.0.0.0
Node
oracleapplication_serverMatch8.2.2
OR
oracleapplication_serverMatch8.3.0
VendorProductVersionCPE
ibmwebsphere_portal6.0.0.0cpe:2.3:a:ibm:websphere_portal:6.0.0.0:*:*:*:*:*:*:*
ibmwebsphere_portal6.0.1.0cpe:2.3:a:ibm:websphere_portal:6.0.1.0:*:*:*:*:*:*:*
ibmwebsphere_portal6.1.0.0cpe:2.3:a:ibm:websphere_portal:6.1.0.0:*:*:*:*:*:*:*
ibmwebsphere_portal6.1.5.0cpe:2.3:a:ibm:websphere_portal:6.1.5.0:*:*:*:*:*:*:*
ibmwebsphere_portal7.0.0.0cpe:2.3:a:ibm:websphere_portal:7.0.0.0:*:*:*:*:*:*:*
ibmwebsphere_portal8.0.0.0cpe:2.3:a:ibm:websphere_portal:8.0.0.0:*:*:*:*:*:*:*
oracleapplication_server8.2.2cpe:2.3:a:oracle:application_server:8.2.2:*:*:*:*:*:*:*
oracleapplication_server8.3.0cpe:2.3:a:oracle:application_server:8.3.0:*:*:*:*:*:*:*

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

AI Score

8

Confidence

High

EPSS

0

Percentile

5.3%