CVE-2010-3518
published 2010-10-14CVE-2010-3518: Unspecified vulnerability in the PeopleSoft Enterprise HCM GP - Japan component in Oracle PeopleSoft and JDEdwards Suite 8.81 SP1 Bundle #13, 8.9 GP Update…
PriorityP423medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
1.46%
70.9th percentile
Unspecified vulnerability in the PeopleSoft Enterprise HCM GP - Japan component in Oracle PeopleSoft and JDEdwards Suite 8.81 SP1 Bundle #13, 8.9 GP Update 2010-E, 9.0 GP Update 2010-E, and 9.1 GP Update 2010-E allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
| oracle | peoplesoft_and_jdedwards_product_suite | — | — |
CVSS provenance
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vgwx-7c53-q5fc: Unspecified vulnerability in the PeopleSoft Enterprise HCM GP - Japan component in Oracle PeopleSoft and JDEdwards Suite 8
ghsa_unreviewed·2022-05-17
CVE-2010-3518 [MEDIUM] GHSA-vgwx-7c53-q5fc: Unspecified vulnerability in the PeopleSoft Enterprise HCM GP - Japan component in Oracle PeopleSoft and JDEdwards Suite 8
Unspecified vulnerability in the PeopleSoft Enterprise HCM GP - Japan component in Oracle PeopleSoft and JDEdwards Suite 8.81 SP1 Bundle #13, 8.9 GP Update 2010-E, 9.0 GP Update 2010-E, and 9.1 GP Update 2010-E allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Red Hat
cups: DoS (infinite loop) via HTTP_UNAUTHORIZED responses STR #3518
vendor_redhat·2010-03-03·CVSS 5.0
CVE-2010-2432 [MEDIUM] CWE-835 cups: DoS (infinite loop) via HTTP_UNAUTHORIZED responses STR #3518
cups: DoS (infinite loop) via HTTP_UNAUTHORIZED responses STR #3518
The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to cause a denial of service (infinite loop) via HTTP_UNAUTHORIZED responses.
Statement: Not vulnerable. This issue did not affect the versions of CUPS as shipped with Red Hat Enterprise Linux 3, 4, or 5.
Package: cups (Red Hat Enterprise Linux 4) - Affected
Package: cups (Red Hat Enterprise Linux 5) - Affected
Package: cups (Red Hat Enterprise Linux 6) - Not affected
No detection rules found.
No public exploits indexed.
2010-10-14
Published