// For flags

CVE-2007-0280

 

Severity Score

7.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Unspecified vulnerability in Oracle HTTP Server 9.0.1.5, Application Server 9.0.4.3, 10.1.2.0.0, 10.1.2.0.2, and 10.1.2.2; and Collaboration Suite 9.0.4.2 and 10.1.2; has unknown impact and attack vectors related to the Oracle Process Mgmt & Notification component, aka OPMN01. NOTE: as of 20070123, Oracle has not disputed claims by a reliable researcher that OPMN01 is for a buffer overflow in Oracle Notification Service (ONS).

Vulnerabilidad no especificada en Oracle HTTP Server 9.0.1.5, Application Server 9.0.4.3, 10.1.2.0.0, 10.1.2.0.2, y 10.1.2.2; y Collaboration Suite 9.0.4.2 y 10.1.2; tiene impacto y vectores de ataque desconocidos relacionados con el componente de notificación y manejo de procesos de Oracle (Oracle Process Mgmt & Notification component), también conocido como OPMN01. NOTA: a partir de 23/01/2007, Oracle no ha cuestionado las afirmaciones de un investigador fiable de que OPMN01 es por un desbordamiento de búfer en el Oracle Notification Service (ONS).

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-01-16 CVE Reserved
  • 2007-01-17 CVE Published
  • 2024-06-11 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Oracle
Search vendor "Oracle"
Application Server
Search vendor "Oracle" for product "Application Server"
9.0.4.3
Search vendor "Oracle" for product "Application Server" and version "9.0.4.3"
-
Affected
Oracle
Search vendor "Oracle"
Application Server
Search vendor "Oracle" for product "Application Server"
10.1.2.0.2
Search vendor "Oracle" for product "Application Server" and version "10.1.2.0.2"
-
Affected
Oracle
Search vendor "Oracle"
Application Server
Search vendor "Oracle" for product "Application Server"
10.1.2.2
Search vendor "Oracle" for product "Application Server" and version "10.1.2.2"
-
Affected
Oracle
Search vendor "Oracle"
Collaboration Suite
Search vendor "Oracle" for product "Collaboration Suite"
9.0.4.2
Search vendor "Oracle" for product "Collaboration Suite" and version "9.0.4.2"
-
Affected
Oracle
Search vendor "Oracle"
Collaboration Suite
Search vendor "Oracle" for product "Collaboration Suite"
10.1.2
Search vendor "Oracle" for product "Collaboration Suite" and version "10.1.2"
-
Affected
Oracle
Search vendor "Oracle"
Http Server
Search vendor "Oracle" for product "Http Server"
9.0.1.5
Search vendor "Oracle" for product "Http Server" and version "9.0.1.5"
-
Affected