CVE-2007-4136
published 2007-11-14CVE-2007-4136: The ricci daemon in Red Hat Conga 0.10.0 allows remote attackers to cause a denial of service (loss of new connections) by repeatedly sending data or…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.75%
75.2th percentile
The ricci daemon in Red Hat Conga 0.10.0 allows remote attackers to cause a denial of service (loss of new connections) by repeatedly sending data or attempting connections.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | conga | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
postgresql: SQL privilege escalation via modifications to session-local state
vendor_redhat·2009-12-14·CVSS 6.5
CVE-2009-4136 [MEDIUM] postgresql: SQL privilege escalation via modifications to session-local state
postgresql: SQL privilege escalation via modifications to session-local state
PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8.4.x before 8.4.2 does not properly manage session-local state during execution of an index function by a database superuser, which allows remote authenticated users to gain privileges via a table with crafted index functions, as demonstrated by functions that modify (1) search_path or (2) a prepared statement, a related issue to CVE-2007-6600 and CVE-2009-3230.
Red Hat
ricci is vulnerable to a connect DoS attack
vendor_redhat·2007-10-31·CVSS 5.0
CVE-2007-4136 [MEDIUM] ricci is vulnerable to a connect DoS attack
ricci is vulnerable to a connect DoS attack
The ricci daemon in Red Hat Conga 0.10.0 allows remote attackers to cause a denial of service (loss of new connections) by repeatedly sending data or attempting connections.
GHSA
GHSA-6v59-3wh4-8h9q: The ricci daemon in Red Hat Conga 0
ghsa_unreviewed·2022-05-01
CVE-2007-4136 [MEDIUM] GHSA-6v59-3wh4-8h9q: The ricci daemon in Red Hat Conga 0
The ricci daemon in Red Hat Conga 0.10.0 allows remote attackers to cause a denial of service (loss of new connections) by repeatedly sending data or attempting connections.
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2007-0640.htmlhttp://secunia.com/advisories/27611http://securitytracker.com/id?1018921http://www.securityfocus.com/bid/26393https://bugzilla.redhat.com/show_bug.cgi?id=336101https://exchange.xforce.ibmcloud.com/vulnerabilities/38358https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9871http://rhn.redhat.com/errata/RHSA-2007-0640.htmlhttp://secunia.com/advisories/27611http://securitytracker.com/id?1018921http://www.securityfocus.com/bid/26393https://bugzilla.redhat.com/show_bug.cgi?id=336101https://exchange.xforce.ibmcloud.com/vulnerabilities/38358https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9871
2007-11-14
Published