PT-2011-2657 · Ibm+1 · Lotus 123+2
Published
2011-04-20
·
Updated
2016-04-30
·
CVE-2011-0808
CVSS v2.0
4.4
Medium
| Vector | AV:L/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0
Outside In Technology versions prior to 8.3.5.5684
Description
The issue affects confidentiality, integrity, and availability. It is related to Outside In Filters, but the exact vectors are unknown. There are claims that the issue involves the Lotus 123 parser in the Outside In component, possibly related to the
vswk6.dll or libvs wk6.so files.Recommendations
For Oracle Fusion Middleware versions 8.3.2.0 through 8.3.5.0, update to a version that is not affected by this issue.
For Outside In Technology versions prior to 8.3.5.5684, consider restricting access to the Outside In Filters until a patch is available.
As a temporary workaround, consider disabling the Lotus 123 parser in the Outside In component to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lotus 123
Oracle Fusion Middleware
Outside In Technology