Vulnerability Name: | CVE-2010-3575 (CCN-62460) | ||||||||
Assigned: | 2010-10-12 | ||||||||
Published: | 2010-10-12 | ||||||||
Updated: | 2010-11-11 | ||||||||
Summary: | Unspecified vulnerability in the Oracle Communications Messaging Server (Sun Java System Messaging Server) component in Oracle Sun Products Suite 6.0, 6.2, 6.3, and 7.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Web Mail. | ||||||||
CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N) 4.7 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N/E:U/RL:OF/RC:C)
4.7 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2010-3575 Source: CCN Type: SA41830 Oracle Communications Messaging Server Web Mail Unspecified Vulnerability Source: CCN Type: Oracle Critical Patch Update Advisory - October 2010 Oracle Critical Patch Update Advisory - October 2010 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html Source: CCN Type: OSVDB ID: 70065 Oracle Communications Messaging Server Webmail Unspecified Remote Issue (2010-3575) Source: CCN Type: BID-43947 Oracle Oracle Communications Messaging Server CVE-2010-3575 Remote Vulnerability Source: CERT Type: US Government Resource TA10-287A Source: XF Type: UNKNOWN osps-messserver-webmail-unspec(62460) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |