Versio.io

CVE-2007-6433

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 19-12-2007 01:00
Last modified: - 19-12-2007 01:00
Total changes: - 10

Description

CVE-2007-6433 EJBQL injection via 'order' parameter

Common Vulnerability Scoring System (CVSS)

-
-
Attack complexity
-
Attack vector
-
Availability
-
Confidentiality
-
Integrity
-
Privileges required
-
Scope
-
User interaction
Base score
Exploitability score
Impact score
 

Verification logic

OR
AND
product=glassfish-javamail-0 AND versionEndExcluding=1.4.0-0jpp.ep1.8
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-1 AND versionEndExcluding=3.2.4-1.SP1_CP02.0jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-annotations-0 AND versionEndExcluding=3.2.1-1.patch02.1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-entitymanager-0 AND versionEndExcluding=3.2.1-1jpp.ep1.6.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hsqldb-1 AND versionEndExcluding=1.8.0.8-2.patch01.1jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jacorb-0 AND versionEndExcluding=2.3.0-1jpp.ep1.4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-aop-0 AND versionEndExcluding=1.5.5-1.CP01.0jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossas-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.3.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-cache-0 AND versionEndExcluding=1.4.1-4.SP8_CP01.1jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-remoting-0 AND versionEndExcluding=2.2.2-3.SP4.0jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-seam-0 AND versionEndExcluding=1.2.1-1.ep1.3.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossweb-0 AND versionEndExcluding=2.0.0-3.CP05.0jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossws-jboss42-0 AND versionEndExcluding=1.2.1-0jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jcommon-0 AND versionEndExcluding=1.0.12-1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jfreechart-0 AND versionEndExcluding=1.0.9-1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jgroups-1 AND versionEndExcluding=2.4.1-1.SP4.0jpp.ep1.2
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=rh-eap-docs-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-0 AND versionEndExcluding=3.2.4-1.SP1_CP02.0jpp.ep1.1.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-annotations-0 AND versionEndExcluding=3.2.1-1.patch02.1jpp.ep1.2.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jacorb-0 AND versionEndExcluding=2.3.0-1jpp.ep1.5.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-aop-0 AND versionEndExcluding=1.5.5-1.CP01.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossas-0 AND versionEndExcluding=4.2.0-4.GA_CP02.ep1.3.el5.3
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-cache-0 AND versionEndExcluding=1.4.1-4.SP8_CP01.1jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-remoting-0 AND versionEndExcluding=2.2.2-3.SP4.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-seam-0 AND versionEndExcluding=1.2.1-1.ep1.3.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossweb-0 AND versionEndExcluding=2.0.0-3.CP05.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jcommon-0 AND versionEndExcluding=1.0.12-1jpp.ep1.2.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jfreechart-0 AND versionEndExcluding=1.0.9-1jpp.ep1.2.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=rh-eap-docs-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.1.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
 

Reference

 


Keywords

REDHAT

 

CVE-2007-6433

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.