CVE-2015-4912Oracle Fusion Middleware vulnerability

5 documents4 sources
Severity
4.3MEDIUMNVD
EPSS
0.5%
top 33.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 22
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1.2.2 and 11.1.2.3 allows remote attackers to affect confidentiality via vectors related to SSO Engine.

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDoracle/fusion_middleware11.1.2.2, 11.1.2.3+1

🔴Vulnerability Details

2
GHSA
GHSA-699r-x4mp-f737: Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 112022-05-17
CVEList
CVE-2015-4912: Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 112015-10-21

💥Exploits & PoCs

2
Exploit-DB
Hawkeye-G 3.0.1.4912 - Persistent Cross-Site Scripting / Information Leakage2015-07-27
Exploit-DB
Hawkeye-G 3.0.1.4912 - Cross-Site Request Forgery2015-07-24
CVE-2015-4912 — Oracle Fusion Middleware vulnerability | cvebase