CVE-2010-0865
published 2010-04-13CVE-2010-0865: Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle E-Business Suite 6.1.1.0 allows remote attackers to affect…
PriorityP422medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
2.08%
79.5th percentile
Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle E-Business Suite 6.1.1.0 allows remote attackers to affect confidentiality via unknown vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | e-business_suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
ET WEB_SPECIFIC_APPS LushiNews SQL Injection Attempt -- comments.php id UNION SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2007-0865 [HIGH] ET WEB_SPECIFIC_APPS LushiNews SQL Injection Attempt -- comments.php id UNION SELECT
ET WEB_SPECIFIC_APPS LushiNews SQL Injection Attempt -- comments.php id UNION SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS LushiNews SQL Injection Attempt -- comments.php id UNION SELECT"; flow:established,to_server; http.uri; content:"/comments.php?"; nocase; content:"id="; nocase; content:"UNION"; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-0865; reference:url,www.exploit-db.com/exploits/3287/; classtype:web-application-attack; sid:2004962; rev:10; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_
No public exploits indexed.
http://secunia.com/advisories/39441http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.htmlhttp://www.securitytracker.com/id?1023859http://www.us-cert.gov/cas/techalerts/TA10-103B.htmlhttp://secunia.com/advisories/39441http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.htmlhttp://www.securitytracker.com/id?1023859http://www.us-cert.gov/cas/techalerts/TA10-103B.html
2010-04-13
Published