Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-5507

EPSS 5.06% · P90
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-5507

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The GIOP service in TNS Listener in the Oracle Net Services component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote attackers to cause a denial of service (crash) or read potentially sensitive memory via a connect GIOP packet with an invalid data size, which triggers a buffer over-read, aka DB22.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Oracle Database Oracle Net Services组件GIOP服务缓冲区溢出和信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 和10.2.0.3版本的Oracle Net Services组件的TNS Listener的GIOP服务允许远程攻击者,可以借助一个 GIOP 信息包和一个无效信息尺寸相连接, 且能触发缓冲区重写,以造成拒绝服务(崩溃)或读取潜在敏感信息。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-5507

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-5507

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-10-17 · 52 CVEs total

CVE-2003-1358HP-UX rs.F3000未明未授权访问漏洞
CVE-2003-1373PHPBB Auth.PHP文件泄漏漏洞
CVE-2003-1372myPHPNuke Links.php跨站脚本漏洞
CVE-2003-1367Majordomo默认配置远程列表订阅者泄露漏洞
CVE-2003-1370Nuked-Klan Guestbook HTML注入漏洞
CVE-2003-1369ByteCatcher FTP Client超长服务器标志缓冲区溢出漏洞
CVE-2003-1368Electrasoft 32Bit FTP Client超长服务器标语缓冲区溢出漏洞
CVE-2003-1371Nuked-Klan远程信息泄露漏洞
CVE-2003-1360HP-UX landiag/lanadmin本地缓冲区溢出漏洞
CVE-2003-1359HP-UX stmkfont未明本地缓冲区溢出漏洞
CVE-2003-1361Veritas Bare Metal Restore远程代码执行漏洞
CVE-2007-5490Okul Otomasyon Portal 'Default.ASP' SQL注入漏洞
CVE-2007-5489Artmedic CMS 'Index.PHP' 本地文件包含漏洞
CVE-2007-5492SiteBar 翻译模块'translator.php' 静态代码注入漏洞
CVE-2007-5491SiteBar 翻译模块(translator.php)目录遍历漏洞
CVE-2007-5534Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne HCM组件未明远程攻击漏洞
CVE-2007-5533Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne People Tools组件安全漏洞
CVE-2007-5532Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne People Tools组件安全漏洞
CVE-2007-5531Oracle Help for Web 安全漏洞
CVE-2007-5530Oracle Database Enterprise Manager的Database Control组件未明影响和远程攻击漏洞

Showing top 20 of 52 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-5507

No comments yet


Leave a comment