MEDIUM · 5.0

CVE-2007-5281

The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remot...

Vulnerability Description

The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service via certain SSL/TLS handshake requests. NOTE: this may be the same as CVE-2007-3698.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
HitachiUcosminexus Application Server Enterprise07_50
HitachiUcosminexus Application Server Standard7_50
HitachiUcosminexus Client07_50
HitachiUcosminexus Developer Professional07_50
HitachiUcosminexus Developer Standard07_50
HitachiUcosminexus Operator07_50
HitachiUcosminexus Service Architect7_50
HitachiUcosminexus Service Platform7_50

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-5281?

CVE-2007-5281 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remot...

How severe is CVE-2007-5281?

CVE-2007-5281 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-5281?

Check the references section above for vendor advisories and patch information. Affected products include: Hitachi Ucosminexus Application Server Enterprise, Hitachi Ucosminexus Application Server Standard, Hitachi Ucosminexus Client, Hitachi Ucosminexus Developer Professional, Hitachi Ucosminexus Developer Standard.