5.5
CVSSv2

CVE-2008-4014

Published: 14/01/2009 Updated: 23/10/2012
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Oracle BPEL Process Manager component in Oracle Application Server allows remote authenticated users to affect confidentiality and integrity via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle application server 1.0

oracle application server 7.0.4.4

oracle application server 10.1.4.0

oracle application server 9.0.2.0.1

oracle application server 1.0.2.2

oracle application server 9.2.0.7

oracle application server 10.1.2.1

oracle application server 10.1.3

oracle application server 10.1.3.1.0

oracle application server 9.0.4

oracle application server 10.2.0.0

oracle application server 1.0.2.0

oracle application server 3.0.7

oracle application server 9.0.4.3

oracle application server 10.1.2

oracle application server 10.1.2.0

oracle application server 10.1.2.3

oracle application server 6.0.8.26_ps17

oracle application server 9.0.2.0.0

oracle application server 4.0.8.2

oracle application server 11i

oracle application server 10.1.3.0

oracle application server 10.1.2.0.2

oracle application server 10.1.2.0.1

oracle application server 10.1.3.0.0

oracle application server 10.1.4.0.1

oracle application server 10.1.3.3.0

oracle application server 10.1.2.0.0

oracle application server 9.0.4.1

oracle application server 9.0.4.2

oracle application server 10.1.0.3

oracle application server 9.0.2

oracle application server 10.1.4.1.0

oracle application server 9.0.3

oracle application server 9.2.0.6

oracle application server 8.1.7

oracle application server 10.1.2.1.0

oracle application server 9.0.2.1

oracle application server 10.1.4.1

oracle application server 9.0.2.3

oracle application server 9.0.3.1

oracle application server 10.1.0.3.1

oracle application server 10.1.2_.0.1

oracle application server 1.0.2

oracle application server 1.0.2.1s

oracle application server 1.0.2.2.2

oracle application server 9.0.2.2

oracle application server 4.0.8

oracle application server 4.0

oracle application server 10.1.3.1

oracle application server 10.1.2.2

oracle application server 10.1.2.2.0

oracle application server 9.0

oracle application server 10.1.3.2.0

oracle application server 9.0.4.0

oracle application server 10.1.3.3

oracle application server 1.0.2.1

oracle application server 10.1.0.2

oracle application server 10.1.0.4

Exploits

The Oracle Application Server (SOA) version 101310 suffers from a cross site scripting vulnerability ...