This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Fujitsu First view 2007-10-11
Product Interstage Studio Last view 2020-02-07
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:fujitsu:interstage_studio:12.1.0:*:*:*:standard-j:*:x86:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.1.0:*:*:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.0.0:*:*:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:10.0.0:*:*:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.2.0:*:*:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.0:*:standard_j:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.0:*:enterprise:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:8.01:*:standard_j:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:8.01:*:enterprise:*:*:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:12.2.0:*:*:*:standard-j:*:x86:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.1.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:12.0.0:*:*:*:standard-j:*:x86:* 1
cpe:2.3:a:fujitsu:interstage_studio:11.1.0a:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:11.1.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:11.0.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:10.1.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:10.0.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.2.0:*:*:*:standard-j:*:*:* 1
cpe:2.3:a:fujitsu:interstage_studio:9.1.0b:*:*:*:standard-j:*:*:* 1

Related : CVE

  Date Alert Description
5.9 2020-02-07 CVE-2019-13163

The Fujitsu TLS library allows a man-in-the-middle attack. This affects Interstage Application Development Cycle Manager V10 and other versions, Interstage Application Server V12 and other versions, Interstage Business Application Manager V2 and other versions, Interstage Information Integrator V11 and other versions, Interstage Job Workload Server V8, Interstage List Works V10 and other versions, Interstage Studio V12 and other versions, Interstage Web Server Express V11, Linkexpress V5, Safeauthor V3, ServerView Resource Orchestrator V3, Systemwalker Cloud Business Service Management V1, Systemwalker Desktop Keeper V15, Systemwalker Desktop Patrol V15, Systemwalker IT Change Manager V14, Systemwalker Operation Manager V16 and other versions, Systemwalker Runbook Automation V15 and other versions, Systemwalker Security Control V1, and Systemwalker Software Configuration Manager V15.

10 2013-12-14 CVE-2013-7105

Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1, and 10.0.0; and Interstage Studio 9.0.0, 9.1.0, 9.2.0, and 10.0.0, has unspecified impact and attack vectors related to "ihsrlog/rotatelogs."

5 2007-10-11 CVE-2007-5366

The Tomcat 4.1-based Servlet Service in Fujitsu Interstage Application Server 7.0 through 9.0.0 and Interstage Apworks/Studio 7.0 through 9.0.0 allows remote attackers to obtain sensitive information (web root path) via unspecified vectors that trigger an error message, probably related to enabling the useCanonCaches Java Virtual Machine (JVM) option.

CWE : Common Weakness Enumeration

%idName
33% (1) CWE-326 Inadequate Encryption Strength
33% (1) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
33% (1) CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path ...

Open Source Vulnerability Database (OSVDB)

id Description
41318 Fujitsu Interstage Application Server (IJServer) Unspecified Path Disclosure