CVE-2012-3152

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Oct 16, 2012
Updated: Dec 19, 2024

Summary

CVE-2012-3152 is a vulnerability affecting Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0. This unspecified issue in the Oracle Reports Developer component allows remote attackers to impact confidentiality and integrity of the Report Server Component. Oracle has not yet confirmed the original researcher's claims that URLPARAMETER functionality can be exploited to read and upload arbitrary files, potentially leading to code execution in conjunction with CVE-2012-3153.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Oracle Fusion Middleware

Affected Vendors

  • BonqDAO