CVE-2010-0884
published 2010-04-13CVE-2010-0884: Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors…
PriorityP45low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.41%
33.0th percentile
Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors related to Data Service for Oracle E-Business Suite, a different vulnerability than CVE-2010-0883.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | sun_products_suite | — | — |
| oracle | sun_products_suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hmvh-j8x6-vjm4: Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3
ghsa_unreviewed·2022-05-02·CVSS 2.1
CVE-2010-0883 [LOW] GHSA-hmvh-j8x6-vjm4: Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3
Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors related to Data Service for Oracle E-Business Suite, a different vulnerability than CVE-2010-0884.
GHSA
GHSA-5v58-xf49-c495: Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3
ghsa_unreviewed·2022-05-02·CVSS 2.1
CVE-2010-0884 [LOW] GHSA-5v58-xf49-c495: Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3
Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors related to Data Service for Oracle E-Business Suite, a different vulnerability than CVE-2010-0883.
Suricata
GPL EXPLOIT unicode directory traversal attempt
suricata·2010-09-23
CVE-2000-0884 GPL EXPLOIT unicode directory traversal attempt
GPL EXPLOIT unicode directory traversal attempt
Rule: alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"GPL EXPLOIT unicode directory traversal attempt"; flow:established,to_server; content:"/..%c1%1c../"; nocase; reference:bugtraq,1806; reference:cve,2000-0884; reference:nessus,10537; classtype:web-application-attack; sid:2100982; rev:14; metadata:created_at 2010_09_23, cve CVE_2000_0884, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, updated_at 2024_11_26, mitre_tactic_id TA0007, mitre_tactic_name Discovery, mitre_technique_id T1083, mitre_technique_name File_And_Directory_Discovery; target:dest_ip;)
Suricata
GPL EXPLOIT unicode directory traversal attempt
suricata·2010-09-23
CVE-2000-0884 GPL EXPLOIT unicode directory traversal attempt
GPL EXPLOIT unicode directory traversal attempt
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"GPL EXPLOIT unicode directory traversal attempt"; flow:established,to_server; http.uri.raw; content:"/..%c0%af../"; nocase; reference:bugtraq,1806; reference:cve,2000-0884; reference:nessus,10537; classtype:web-application-attack; sid:2100981; rev:17; metadata:created_at 2010_09_23, cve CVE_2000_0884, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, updated_at 2024_11_26, mitre_tactic_id TA0007, mitre_tactic_name Discovery, mitre_technique_id T1083, mitre_technique_name File_And_Directory_Discovery; target:dest_ip;)
Suricata
GPL EXPLOIT unicode directory traversal attempt
suricata·2010-09-23
CVE-2000-0884 GPL EXPLOIT unicode directory traversal attempt
GPL EXPLOIT unicode directory traversal attempt
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"GPL EXPLOIT unicode directory traversal attempt"; flow:established,to_server; http.uri.raw; content:"/..%c1%9c../"; reference:bugtraq,1806; reference:cve,2000-0884; reference:nessus,10537; classtype:web-application-attack; sid:2100983; rev:22; metadata:created_at 2010_09_23, cve CVE_2000_0884, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, updated_at 2024_11_26, mitre_tactic_id TA0007, mitre_tactic_name Discovery, mitre_technique_id T1083, mitre_technique_name File_And_Directory_Discovery; target:dest_ip;)
Suricata
GPL ATTACK_RESPONSE file copied ok
suricata·2010-09-23
CVE-2000-0884 GPL ATTACK_RESPONSE file copied ok
GPL ATTACK_RESPONSE file copied ok
Rule: alert http $HTTP_SERVERS any -> $EXTERNAL_NET any (msg:"GPL ATTACK_RESPONSE file copied ok"; flow:established,to_client; file.data; content:"1 file|28|s|29| copied"; nocase; reference:bugtraq,1806; reference:cve,2000-0884; classtype:bad-unknown; sid:2100497; rev:15; metadata:created_at 2010_09_23, cve CVE_2000_0884, confidence Medium, signature_severity Informational, updated_at 2024_04_03;)
No public exploits indexed.
No writeups or analysis indexed.
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021808.1-1http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.htmlhttp://www.securityfocus.com/bid/39464http://www.us-cert.gov/cas/techalerts/TA10-103B.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/57760http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021808.1-1http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.htmlhttp://www.securityfocus.com/bid/39464http://www.us-cert.gov/cas/techalerts/TA10-103B.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/57760
2010-04-13
Published