Skip to main content

Hitachi Cosminexus Products Oracle Java Multiple Vulnerabilities

Last Update Date: 22 Apr 2013 09:58 Release Date: 22 Apr 2013 3854 Views

RISK: High Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

Multiple vulnerabilities have been identified in various Hitachi Cosminexus products, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to disclose certain sensitive information, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system.

 

The vulnerabilities exist in the bundled version of Cosminexus Developer's Kit for Java.  For detail of the vulnerability, please refer to SA13041701.


Impact

  • Denial of Service
  • Remote Code Execution
  • Information Disclosure

System / Technologies affected

  • Cosminexus 7.x
  • Cosminexus 8.x
  • Cosminexus 9.x
  • Cosminexus Application Server 5.x
  • Cosminexus Application Server 6.x
  • Cosminexus Client 6.x
  • Cosminexus Developer 5.x
  • Cosminexus Developer 6.x
  • Cosminexus Server 4.x
  • Cosminexus Studio 4.x
  • Cosminexus Studio 5.x
  • uCosminexus Application Server
  • uCosminexus Client
  • uCosminexus Developer
  • uCosminexus Operator
  • uCosminexus Service Architect
  • uCosminexus Service Platform

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link