CVE-2009-1008

high

Description

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1010.

References

http://www.us-cert.gov/cas/techalerts/TA09-105A.html

http://www.securitytracker.com/id?1022055

http://www.securityfocus.com/bid/34461

http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.html

http://www-01.ibm.com/support/docview.wss?uid=swg21660640

http://secunia.com/advisories/34693

Details

Source: Mitre, NVD

Published: 2009-04-15

Updated: 2016-11-22

Risk Information

CVSS v2

Base Score: 4.4

Vector: CVSS2#AV:L/AC:M/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Severity: High