CVE-2012-3152
CVSS 3.1 Score 9.1 of 10 (high)
Details
Published Oct 16, 2012
Updated: Dec 19, 2024
Summary
CVE-2012-3152 is a vulnerability affecting Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0. This unspecified issue in the Oracle Reports Developer component allows remote attackers to impact confidentiality and integrity of the Report Server Component. Oracle has not yet confirmed the original researcher's claims that URLPARAMETER functionality can be exploited to read and upload arbitrary files, potentially leading to code execution in conjunction with CVE-2012-3153.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Oracle Fusion Middleware
Affected Vendors
- BonqDAO