CVE-2011-3523Oracle Fusion Middleware vulnerability

8 documents5 sources
Severity
3.5LOWNVD
EPSS
0.2%
top 60.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 18
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 10.1.3.5.0 and 10.1.3.5.1 allows remote authenticated users to affect integrity, related to WSM Console, a different vulnerability than CVE-2011-2237.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 6.8 | Impact: 2.9

Affected Packages1 packages

NVDoracle/fusion_middleware10.1.3.5, 10.1.3.5.0, 10.1.3.5.1+2

🔴Vulnerability Details

4
GHSA
GHSA-4q2j-v5p6-99mv: Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 102022-05-17
GHSA
GHSA-vpmc-fhc9-r7gr: Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 102022-05-17
CVEList
CVE-2011-3523: Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 102011-10-18
CVEList
CVE-2011-2237: Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 102011-10-18

📋Vendor Advisories

1
Red Hat
(nnrpd): Prone to STARTTLS plaintext command injection2012-06-15

💬Community

1
Bugzilla
CVE-2012-3523 inn (nnrpd): Prone to STARTTLS plaintext command injection2012-08-21
CVE-2011-3523 — Oracle Fusion Middleware vulnerability | cvebase