Lucene search

K
nvd[email protected]NVD:CVE-2010-2375
HistoryJul 13, 2010 - 10:30 p.m.

CVE-2010-2375

2010-07-1322:30:02
web.nvd.nist.gov
8

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

5.9

Confidence

Low

EPSS

0.004

Percentile

72.4%

Package/Privilege: Plugins for Apache, Sun and IIS web servers Unspecified vulnerability in the WebLogic Server component in Oracle Fusion Middleware 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, 10.3.2, and 10.3.3 allows remote attackers to affect confidentiality and integrity, related to IIS.

Affected configurations

Nvd
Node
beaweblogic_serverMatch7.0sp7
OR
beaweblogic_serverMatch8.1sp6
OR
beaweblogic_serverMatch9.0
OR
beaweblogic_serverMatch9.1
OR
beaweblogic_serverMatch9.2mp3
OR
bea_systemsweblogic_serverMatch10.0mp2
OR
oracleweblogic_serverMatch10.3.2.0.0
OR
oracleweblogic_serverMatch10.3.3.0.0
VendorProductVersionCPE
beaweblogic_server7.0cpe:2.3:a:bea:weblogic_server:7.0:sp7:*:*:*:*:*:*
beaweblogic_server8.1cpe:2.3:a:bea:weblogic_server:8.1:sp6:*:*:*:*:*:*
beaweblogic_server9.0cpe:2.3:a:bea:weblogic_server:9.0:*:*:*:*:*:*:*
beaweblogic_server9.1cpe:2.3:a:bea:weblogic_server:9.1:*:*:*:*:*:*:*
beaweblogic_server9.2cpe:2.3:a:bea:weblogic_server:9.2:mp3:*:*:*:*:*:*
bea_systemsweblogic_server10.0cpe:2.3:a:bea_systems:weblogic_server:10.0:mp2:*:*:*:*:*:*
oracleweblogic_server10.3.2.0.0cpe:2.3:a:oracle:weblogic_server:10.3.2.0.0:*:*:*:*:*:*:*
oracleweblogic_server10.3.3.0.0cpe:2.3:a:oracle:weblogic_server:10.3.3.0.0:*:*:*:*:*:*:*

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

5.9

Confidence

Low

EPSS

0.004

Percentile

72.4%