4.9
CVSSv2

CVE-2007-4124

Published: 01/08/2007 Updated: 29/07/2017
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

The session failover function in Cosminexus Component Container in Cosminexus 6, 6.7, and 7 prior to 20070731, as used in multiple Hitachi products, can use session data for the wrong user under unspecified conditions, which might allow remote authenticated users to obtain sensitive information, corrupt another user's session data, and possibly gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

hitachi cosminexus collaboration portal

hitachi cosminexus developer 6

hitachi electronic form workflow

hitachi groupmax collaboration portal

hitachi ucosminexus opentp1 web front-end set

hitachi ucosminexus service architect

hitachi ucosminexus application server

hitachi ucosminexus collaboration portal

hitachi ucosminexus service platform

hitachi cosminexus application server 6

hitachi ucosminexus developer

hitachi ucosminexus erp integrator

hitachi cosminexus erp integrator

hitachi cosminexus opentp1 web front-end set