Vulnerability CVE-2008-1827


Published: 2008-04-16   Modified: 2012-02-12

Description:
Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10.2 and 12.0.4 have unknown impact and attack vectors related to (a) Advanced Pricing component, aka (1) APP02, (2) APP03, and (3) APP09; (b) Application Object Library component, aka (4) APP04, (5) APP07, and (6) APP11; (c) Applications Manager component, aka (7) APP06; (d) and Applications Technology Stack component, aka (8) APP08.

Type:

CWE-noinfo

Vendor: Oracle
Product: E-business suite 12 
Version: 12.0.4;
Product: E-business suite 11i 
Version: 11.5.10.2;

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete

 References:
http://www.oracle.com/technetwork/topics/security/cpuapr2008-082075.html
http://www.securityfocus.com/archive/1/491024/100/0/threaded
http://www.securitytracker.com/id?1019855
http://www.vupen.com/english/advisories/2008/1233/references
http://www.vupen.com/english/advisories/2008/1267/references
https://exchange.xforce.ibmcloud.com/vulnerabilities/41858
https://exchange.xforce.ibmcloud.com/vulnerabilities/42056
https://exchange.xforce.ibmcloud.com/vulnerabilities/42057
https://exchange.xforce.ibmcloud.com/vulnerabilities/42059
https://exchange.xforce.ibmcloud.com/vulnerabilities/42060
https://exchange.xforce.ibmcloud.com/vulnerabilities/42061
https://exchange.xforce.ibmcloud.com/vulnerabilities/42062
https://exchange.xforce.ibmcloud.com/vulnerabilities/42063
https://exchange.xforce.ibmcloud.com/vulnerabilities/42064

Related CVE
CVE-2019-2729
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated at...
CVE-2019-2726
Vulnerability in the Enterprise Manager Ops Center component of Oracle Enterprise Manager Products Suite (subcomponent: Services Integration). The supported version that is affected is 12.3.3. Difficult to exploit vulnerability allows low privileged ...
CVE-2019-2725
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with ...
CVE-2019-2723
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.28 and prior to 6.0.6. Easily exploitable vulnerability allows low privileged attacker with logon...
CVE-2019-2722
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.28 and prior to 6.0.6. Easily exploitable vulnerability allows low privileged attacker with logon...
CVE-2019-2721
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.28 and prior to 6.0.6. Easily exploitable vulnerability allows low privileged attacker with logon...
CVE-2019-2720
Vulnerability in the Oracle Data Integrator component of Oracle Fusion Middleware (subcomponent: ODI Tools). Supported versions that are affected are 11.1.1.9.0 and 12.2.1.3.0. Difficult to exploit vulnerability allows low privileged attacker with ne...
CVE-2019-2719
Vulnerability in the Oracle Knowledge component of Oracle Siebel CRM (subcomponent: Web Applications (InfoCenter)). Supported versions that are affected are 8.5.1.0 - 8.5.1.7, 8.6.0 and 8.6.1. Easily exploitable vulnerability allows unauthenticated a...

Copyright 2019, cxsecurity.com

 

Back to Top