mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 17:21:36 +00:00
436 lines
17 KiB
JSON
436 lines
17 KiB
JSON
{
|
|
"id": "CVE-2008-4014",
|
|
"sourceIdentifier": "secalert_us@oracle.com",
|
|
"published": "2009-01-14T02:30:00.267",
|
|
"lastModified": "2024-11-21T00:50:41.573",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Unspecified vulnerability in the Oracle BPEL Process Manager component in Oracle Application Server allows remote authenticated users to affect confidentiality and integrity via unknown vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Vulnerabilidad sin especificar en el componente Oracle BPEL Process Manager en Oracle Application Server None permite a usuarios remotamente autentificados afectar la confidencialidad e integridad mediante vectores desconocidos."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:N",
|
|
"baseScore": 5.5,
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "SINGLE",
|
|
"confidentialityImpact": "PARTIAL",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "NONE"
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.0,
|
|
"impactScore": 4.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "NVD-CWE-noinfo"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "296BCDEA-69B8-4184-928B-3E04F4F09C89"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CC62E1B2-6964-4459-A1EF-A6A087C2960F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "86DD9A13-E533-48B2-B5EB-9B7A0124D594"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3E13AEBC-7718-4206-98EC-95E9228469C7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.1s:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6A6F28FD-6EAD-4EDD-B9A1-0B120D0F0919"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DC4ED2EB-1E90-4E99-AAD6-5D838800F9B7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.2:r1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "117EF4D2-3EA8-410E-8721-31C3C41A7B56"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.2:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F7969E06-9E5E-4264-B235-B0C4C1DB56D9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:1.0.2.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C0160E00-D722-40CE-976C-77CB91C1B94D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:3.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "982CB6A8-015D-468C-AE03-68A06AA6CB1C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F6C0725F-D926-473E-8E74-EA3A38D47EC4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:4.0.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "99FCD0D0-5DFC-40DA-AECC-BB9ED58070C5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:4.0.8.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0C0B5D7D-0F8C-4AA4-B0C4-895F17F124E2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:6.0.8.26_ps17:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3BE3F656-8A85-4A2B-92E4-3DBA70D172C8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:7.0.4.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "29601BB1-9F56-4822-9CEA-A7B507C96CDC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:8.1.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8619C62A-36D2-4AE7-A0F7-6ADAFDE02483"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C09C4B72-2680-4AFB-9E0B-9B24EFF7066E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CFAE1E8A-644B-42FD-B149-89AD420BD7A7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0C57D5C2-EEFC-432B-BAF6-57984578186C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8075E330-5819-4105-9BB7-4DCC3C0EAEF9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CB346764-EDF2-4BE1-A273-C2CE9A173CFB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E59B89D9-AAF9-40CB-931C-EB4958491B99"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C64888FB-133F-4930-8368-1BD2A4FB11A6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.2.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "87DEB7BD-FB71-4C22-A0FF-89923B263DC2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BAAD1A33-4333-4AFB-8D49-1274AE345BA9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.3.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "852BF209-3C6F-403B-920D-50C46D37515B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "335143DB-4538-49F4-BAFB-C47802318667"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F6A3E2D8-617C-4740-B662-F8884CE26BF1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.4.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4FFBB096-523E-4634-ADC4-6CFB03F9577B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.4.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D809B0B7-70EF-47C5-B91F-923E999CA7FB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.0.4.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9CA9867F-D7BC-4230-9584-C2FBB6642482"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.2.0.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DB37CB05-942B-460C-8F1E-2098A4B5F6AE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:9.2.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A6834D6B-859F-4F69-ADF8-4A2BA6672869"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1C1B82E1-D1AD-46F2-8B95-117F38563FC6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6FC5FDD9-F24C-4DA2-9CE3-96522DB4A10E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.0.3.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DDECF110-F375-4A3C-8BA9-1CF69B6EF027"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "77F36775-7D44-405E-8DE3-EBD71C9EE421"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D94B7D50-4527-4C14-8A50-D4C0566F36BA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EAC53C94-1C7B-4B5E-8114-EFB5ED61B045"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2328BA88-C390-46EA-8C30-9F0A001C10EB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.0:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FE7CAAFD-C15A-4124-933F-C6CCFF35BB06"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FB8F5AAE-0365-4E01-AB04-CDC6D58B00B6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.1:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "58B58DAF-FDF2-4A07-97E1-3CDE2A84670E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F0B4BAA9-D045-4D2B-8220-47F47ED936DF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.0.2:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A4C5E780-C03A-46DB-85A2-2471AF377206"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F3FFDBFF-C219-49E7-AD16-0657D6D4E8BD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FE6C4D36-D9D1-4143-94AA-D8E08F23D2E3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5B0223F3-A9D4-4A4F-8934-761D83CD5494"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F01A3ABC-2033-47E0-A84C-62CCA67C578F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "96C617ED-3D8C-4B64-A56A-30BDE6E9B8D2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.2_.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0A0D1B29-05BB-415E-ADA3-574F49D96AF4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "155F0A5E-7DF2-4DA6-9ABB-97AFFE090618"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BC3575AD-C253-4FBA-A2D8-509DABED8431"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3DB877D9-C8BB-4A08-A953-043F7DB5BA6E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B4FEFEB0-0EC5-4285-870E-3E0682673E9C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8B77FF3B-B84E-4918-8688-0B25CFC61141"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9D9D2A52-5131-4A24-A355-2DACAFFA22D6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A79FF0E1-4EEF-49E2-890C-1C8937CF2F5A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.3.3.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EE059C8C-BA43-4757-8CA6-8E1B67DF8903"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "70D887D7-B7FB-44DF-98DA-7FBC4EF1D910"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.4.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "561EF25D-96FA-41EB-ADBE-82F22766CA6B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.4.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E9A3EA86-0C95-4260-8E11-ECCE161BDF5F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.1.4.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "24080465-B313-44B6-910A-DC7F6F670899"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:10.2.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F53D7685-95E0-4653-8D48-290E557793E7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:oracle:application_server:11i:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B2C984F4-C649-44E1-99D5-DD565CFD7ACC"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://secunia.com/advisories/33525",
|
|
"source": "secalert_us@oracle.com"
|
|
},
|
|
{
|
|
"url": "http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html",
|
|
"source": "secalert_us@oracle.com"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/33177",
|
|
"source": "secalert_us@oracle.com"
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id?1021572",
|
|
"source": "secalert_us@oracle.com"
|
|
},
|
|
{
|
|
"url": "http://www.vupen.com/english/advisories/2009/0115",
|
|
"source": "secalert_us@oracle.com"
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/33525",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/33177",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id?1021572",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://www.vupen.com/english/advisories/2009/0115",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |