René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

99 lines
3.1 KiB
JSON

{
"id": "CVE-2009-1977",
"sourceIdentifier": "secalert_us@oracle.com",
"published": "2009-07-14T23:30:00.517",
"lastModified": "2017-08-17T01:30:36.227",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the July 2009 Oracle CPU. Oracle has not commented on claims from an independent researcher that this vulnerability allows attackers to bypass authentication via unknown vectors involving the username parameter and login.php."
},
{
"lang": "es",
"value": "Vulnerabilidad no especificada en el componente Oracle Secure Backup en Oracle Secure Backup v10.2.0.3 permite a los atacantes remotos afectar a la confidencialidad, integridad y disponibilidad a trav\u00e9s e vectores desconocidos."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:oracle:secure_backup:10.2.0.3:*:*:*:*:*:*:*",
"matchCriteriaId": "42091C54-567D-4626-98EA-41B568965B23"
}
]
}
]
}
],
"references": [
{
"url": "http://www.oracle.com/technetwork/topics/security/cpujul2009-091332.html",
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.securityfocus.com/bid/35672",
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.securitytracker.com/id?1022565",
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.vupen.com/english/advisories/2009/1900",
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-09-058/",
"source": "secalert_us@oracle.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51761",
"source": "secalert_us@oracle.com"
}
]
}