CVE-2009-1010
published 2009-04-15CVE-2009-1010: Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality…
PriorityP412medium4.4CVSS 2.0
AVLACMAuNCPIPAP
EPSS
0.42%
34.1th percentile
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1008.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
| oracle | application_server | — | — |
| oracle | application_server | — | — |
CVSS provenance
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2j6r-x87g-9p2g: Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8
ghsa_unreviewed·2022-05-02·CVSS 4.4
CVE-2009-1008 [MEDIUM] GHSA-2j6r-x87g-9p2g: Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1010.
GHSA
GHSA-jj7j-66w6-9293: Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8
ghsa_unreviewed·2022-05-02·CVSS 4.4
CVE-2009-1010 [MEDIUM] GHSA-jj7j-66w6-9293: Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1008.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/53749http://secunia.com/advisories/34693http://www-01.ibm.com/support/docview.wss?uid=swg21660640http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.htmlhttp://www.securityfocus.com/bid/34461http://www.securitytracker.com/id?1022055http://www.us-cert.gov/cas/techalerts/TA09-105A.htmlhttp://osvdb.org/53749http://secunia.com/advisories/34693http://www-01.ibm.com/support/docview.wss?uid=swg21660640http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.htmlhttp://www.securityfocus.com/bid/34461http://www.securitytracker.com/id?1022055http://www.us-cert.gov/cas/techalerts/TA09-105A.html
2009-04-15
Published