PT-2011-2657 · Ibm+1 · Lotus 123+2
Publicado
2011-04-20
·
Atualizado
2016-04-30
·
CVE-2011-0808
CVSS v2.0
4.4
Média
| Vetor | AV:L/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0
Outside In Technology versions prior to 8.3.5.5684
Description
The issue affects confidentiality, integrity, and availability. It is related to Outside In Filters, but the exact vectors are unknown. There are claims that the issue involves the Lotus 123 parser in the Outside In component, possibly related to the
vswk6.dll or libvs wk6.so files.Recommendations
For Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0, update to a version that is not affected by this issue.
For Outside In Technology versions prior to 8.3.5.5684, consider restricting access to the Outside In Filters until a patch is available.
As a temporary workaround, consider disabling the Lotus 123 parser in the Outside In component to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Lotus 123
Oracle Fusion Middleware
Outside In Technology