CVE-2007-0290
published 2007-01-17CVE-2007-0290: Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5.10CU2 have unknown impact and attack vectors related to (1) Application…
PriorityP421medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
1.63%
73.8th percentile
Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5.10CU2 have unknown impact and attack vectors related to (1) Application Object Library (APPS01), (2) Human Resources (APPS03), (3) Payables (APPS04), (4) Trading Community Architecture (APPS05), and (5) Web Applications Desktop Integrator (APPS06).
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | e-business_suite | — | — |
CVSS provenance
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x3f8-9pw6-9v28: Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11
ghsa_unreviewed·2022-05-01
CVE-2007-0290 [MEDIUM] GHSA-x3f8-9pw6-9v28: Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11
Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5.10CU2 have unknown impact and attack vectors related to (1) Application Object Library (APPS01), (2) Human Resources (APPS03), (3) Payables (APPS04), (4) Trading Community Architecture (APPS05), and (5) Web Applications Desktop Integrator (APPS06).
Cisco
Local Privilege Escalation Vulnerabilities in Cisco VPN Client
vendor_cisco·2007-08-15·CVSS 6.8
CVE-2007-4414 [MEDIUM] CWE-264 Local Privilege Escalation Vulnerabilities in Cisco VPN Client
Local Privilege Escalation Vulnerabilities in Cisco VPN Client
Two vulnerabilities exist in the Cisco VPN Client for Microsoft
Windows that may allow unprivileged users to elevate their privileges to those
of the LocalSystem account.
A workaround exists for one of the two vulnerabilities disclosed in
this advisory.
Cisco has made free software available to address these
vulnerabilities for affected customers.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20070815-vpnclient.
Note: Releases 5.0.7.0240 (beta release) and 5.0.7.0290 (official
release) of the 64-bit version of the Cisco VPN Client had a regression in the
fix for the vulnerability "Local Privilege Escalation Through Default cvpnd.exe
File Permissions". Rele
Cisco
Local Privilege Escalation Vulnerabilities in Cisco VPN Client
vendor_cisco
CVE-2007-4414 Local Privilege Escalation Vulnerabilities in Cisco VPN Client
CVE-2007-4414: Local Privilege Escalation Vulnerabilities in Cisco VPN Client
Two vulnerabilities exist in the Cisco VPN Client for Microsoft Windows that may allow unprivileged users to elevate their privileges to those of the LocalSystem account. A workaround exists for one of the two vulnerabilities disclosed in this advisory. Cisco has made free software available to address these vulnerabilities for affected customers. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20070815-vpnclient . Note: Releases 5.0.7.0240 (beta release) and 5.0.7.0290 (official release) of the 64-bit version of the Cisco VPN Client had a regression in the fix for the vulnerability "Local Privilege Escalation Through Default cvpnd.exe File Permiss
Cisco
Local Privilege Escalation Vulnerabilities in Cisco VPN Client
vendor_cisco
CVE-2007-4415 Local Privilege Escalation Vulnerabilities in Cisco VPN Client
CVE-2007-4415: Local Privilege Escalation Vulnerabilities in Cisco VPN Client
Two vulnerabilities exist in the Cisco VPN Client for Microsoft Windows that may allow unprivileged users to elevate their privileges to those of the LocalSystem account. A workaround exists for one of the two vulnerabilities disclosed in this advisory. Cisco has made free software available to address these vulnerabilities for affected customers. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20070815-vpnclient . Note: Releases 5.0.7.0240 (beta release) and 5.0.7.0290 (official release) of the 64-bit version of the Cisco VPN Client had a regression in the fix for the vulnerability "Local Privilege Escalation Through Default cvpnd.exe File Permiss
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/32888http://osvdb.org/32890http://osvdb.org/32891http://osvdb.org/32892http://osvdb.org/32893http://secunia.com/advisories/23794http://securitytracker.com/id?1017522http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.htmlhttp://www.securityfocus.com/bid/22083http://www.us-cert.gov/cas/techalerts/TA07-017A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/31541http://osvdb.org/32888http://osvdb.org/32890http://osvdb.org/32891http://osvdb.org/32892http://osvdb.org/32893http://secunia.com/advisories/23794http://securitytracker.com/id?1017522http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.htmlhttp://www.securityfocus.com/bid/22083http://www.us-cert.gov/cas/techalerts/TA07-017A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/31541
2007-01-17
Published