PT-2011-2657 · Ibm+1 · Lotus 123+2

Published

2011-04-20

·

Updated

2016-04-30

·

CVE-2011-0808

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0 Outside In Technology versions prior to 8.3.5.5684
Description The issue affects confidentiality, integrity, and availability. It is related to Outside In Filters, but the exact vectors are unknown. There are claims that the issue involves the Lotus 123 parser in the Outside In component, possibly related to the vswk6.dll or libvs wk6.so files.
Recommendations For Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0, update to a version that is not affected by this issue. For Outside In Technology versions prior to 8.3.5.5684, consider restricting access to the Outside In Filters until a patch is available. As a temporary workaround, consider disabling the Lotus 123 parser in the Outside In component to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2011-0808

Affected Products

Lotus 123
Oracle Fusion Middleware
Outside In Technology