// For flags

CVE-2010-4419

 

Severity Score

5.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Unspecified vulnerability in the PeopleSoft Enterprise CRM component in Oracle PeopleSoft and JDEdwards Suite 9.0 Bundle #31 and 9.1 Bundle #6 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Order Capture.

Una vulnerabilidad no especificada en el componente "PeopleSoft Enterprise CRM" en Oracle PeopleSoft y JDEdwards Suite v9.0 Bundle #31 y v9.1 Bundle #6 permite a usuarios remotos autenticados afectar a la confidencialidad y la integridad a través de vectores desconocidos relacionados con una "Captura de Orden".

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-12-06 CVE Reserved
  • 2011-01-19 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Oracle
Search vendor "Oracle"
Peoplesoft And Jdedwards Product Suite
Search vendor "Oracle" for product "Peoplesoft And Jdedwards Product Suite"
9.0
Search vendor "Oracle" for product "Peoplesoft And Jdedwards Product Suite" and version "9.0"
bundle31
Affected
Oracle
Search vendor "Oracle"
Peoplesoft And Jdedwards Product Suite
Search vendor "Oracle" for product "Peoplesoft And Jdedwards Product Suite"
9.1
Search vendor "Oracle" for product "Peoplesoft And Jdedwards Product Suite" and version "9.1"
bundle6
Affected