Unknown
CVE-2007-3794
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer’s Kit for Java before 20070312, and third-party products that use this software, allows attackers to have an unknown impact via certain GIF images, related to use of GIF image processing APIs by a Java application.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- cosminexus application server 05 00 05 00 h,
- cosminexus application server 05 00 05 00 r,
- cosminexus application server 05 01 05 01 k,
- cosminexus application server 05 02 05 02 e,
- cosminexus application server 05 05 05 00 o,
- cosminexus application server 05 05 05 05 h,
- cosminexus application server 05 05 05 05 l,
- cosminexus application server 06 00 06 00 a,
- cosminexus application server 06 00 06 00 b,
- cosminexus application server 06 00 06 00 d,
- cosminexus application server 06 00 06 00 e,
- cosminexus application server 06 00 06 00 g,
- cosminexus application server 06 02 06 02 f,
- cosminexus application server 06 50 06 50 b,
- cosminexus application server 06 50 06 50 c,
- cosminexus application server 06 50 06 50 d,
- cosminexus application server 06 50 06 50 e,
- cosminexus application server 06 50 06 50 f,
- cosminexus application server 06 51 06 51 b,
- cosminexus application server 06 51 06 51 c,
- cosminexus application server 06 51 06 51 g,
- cosminexus client 06 00 06 00 g,
- cosminexus client 06 02 06 02 f,
- cosminexus client 06 50 06 50 e,
- cosminexus client 06 51 06 51 g,
- cosminexus developer 05 00 05 00 h,
- cosminexus developer 05 01 05 01 k,
- cosminexus developer 05 05 05 05 o,
- cosminexus developer 06 00 06 00 g,
- cosminexus developer 06 02 06 02 f,
- cosminexus developer 06 50 06 50 e,
- cosminexus developer 06 51 06 51 g,
- cosminexus server 04 00 04 00 a,
- cosminexus server 04 01 04 01 a,
- cosminexus studio 04 00 04 00 a,
- cosminexus studio 04 01 04 01 a,
- cosminexus studio 05 05 05 05 o,
- ucosminexus application server 06 70 06 70 a,
- ucosminexus application server 06 70 06 70 b,
- ucosminexus application server 06 70 06 70 c,
- ucosminexus application server 06 70 06 70 d,
- ucosminexus application server 06 70 06 70 h,
- ucosminexus application server 06 70 06 72,
- ucosminexus application server 06 71 06 71 b,
- ucosminexus application server 07 00,
- ucosminexus application server 07 00 07 10,
- ucosminexus application server 07 00 07 20,
- ucosminexus application server 07 10,
- ucosminexus client 06 70 06 70 b,
- ucosminexus client 06 71 06 71 b,
- ucosminexus client 07 00 07 20,
- ucosminexus developer 06 70 06 70 b,
- ucosminexus developer 06 71 06 71 b,
- ucosminexus operator 07 00 07 20,
- ucosminexus service architect 07 00 07 20,
- ucosminexus service platform 07 00 07 10,
- ucosminexus service platform 07 00 07 20,
- ucosminexus service platform 07 10
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: