Vulnerabilities > CVE-2007-2134 - Multiple vulnerability in Oracle April 2007 Security Update

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
oracle

Summary

Unspecified vulnerability in the HTML Server in Oracle JD Edwards EnterpriseOne SP23_Q1 and 8.96.I1 has unknown impact and local attack vectors, aka JDE01. The vendor has addressed this issue through the release of the following patch information: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html

Vulnerable Configurations

Part Description Count
Application
Oracle
2

Saint

bid23532
descriptionOracle Database Advanced Replication component DBMS_SNAP_INTERNAL overflow
iddatabase_oracle_version
osvdb39933
titleoracle_advrep_snap_internal
typeremote