CyberSec.Space Logo
CVEブラウザに戻る

CVE-2007-4124

MEDIUM
4.9
CVSS Severity Score
EPSS Score0.1410%
EPSS Percentile6.33th
Published2007年8月1日
Last Modified2026年4月23日

Vulnerability Description

The session failover function in Cosminexus Component Container in Cosminexus 6, 6.7, and 7 before 20070731, as used in multiple Hitachi products, can use session data for the wrong user under unspecified conditions, which might allow remote authenticated users to obtain sensitive information, corrupt another user's session data, and possibly gain privileges.

Affected Platforms (CPE)

📦
Hitachi

Cosminexus Application Server

= 6
📦
Hitachi

Cosminexus Application Server

= 6
📦
Hitachi

Cosminexus Collaboration Portal

All versions
📦
Hitachi

Cosminexus Developer

= 6
📦
Hitachi

Cosminexus Developer

= 6
📦
Hitachi

Cosminexus Developer

= 6
📦
Hitachi

Cosminexus Erp Integrator

All versions
📦
Hitachi

Cosminexus Opentp1 Web Front End Set

All versions
📦
Hitachi

Electronic Form Workflow

All versions
📦
Hitachi

Electronic Form Workflow

All versions
📦
Hitachi

Electronic Form Workflow

All versions
📦
Hitachi

Groupmax Collaboration Portal

All versions
📦
Hitachi

Ucosminexus Application Server

All versions
📦
Hitachi

Ucosminexus Application Server

All versions
📦
Hitachi

Ucosminexus Collaboration Portal

All versions
📦
Hitachi

Ucosminexus Developer

All versions
📦
Hitachi

Ucosminexus Developer

All versions
📦
Hitachi

Ucosminexus Developer

All versions
📦
Hitachi

Ucosminexus Erp Integrator

All versions
📦
Hitachi

Ucosminexus Opentp1 Web Front End Set

All versions
📦
Hitachi

Ucosminexus Service Architect

All versions
📦
Hitachi

Ucosminexus Service Platform

All versions

References & Advisories

関連する脆弱性情報

CVE-2007-4124 Detail & Impact Analysis | CVSS 4.9 (MEDIUM) | Cyber-Sec.Space | Cyber-Sec.Space