First published: Wed Jan 17 2007(Updated: )
Unspecified vulnerability in Oracle HTTP Server 9.0.1.5, Application Server 9.0.4.3, 10.1.2.0.0, 10.1.2.0.2, and 10.1.2.2; and Collaboration Suite 9.0.4.2 and 10.1.2; has unknown impact and attack vectors related to the Oracle Process Mgmt & Notification component, aka OPMN01. NOTE: as of 20070123, Oracle has not disputed claims by a reliable researcher that OPMN01 is for a buffer overflow in Oracle Notification Service (ONS).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Server | =10.1.2.2 | |
Oracle Application Server | =10.1.2.0.2 | |
Oracle Application Server | =9.0.4.3 | |
Oracle Collaboration Suite 10g release 1 | =9.0.4.2 | |
Oracle Collaboration Suite 10g release 1 | =10.1.2 | |
Oracle HTTP Server | =9.0.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-0280 is currently unspecified, indicating potential unknown impacts.
CVE-2007-0280 affects Oracle HTTP Server version 9.0.1.5, multiple versions of Oracle Application Server, and Oracle Collaboration Suite.
To detect CVE-2007-0280, verify if your systems are running the affected versions of Oracle software listed in the vulnerability report.
There is no specific patch provided for CVE-2007-0280 due to the unspecified nature of the vulnerabilities.
If using affected Oracle software, consider upgrading to the latest versions or consulting Oracle for any security advisories.