PT-2013-1743 · Oracle · Oracle Enterprise Manager Grid Control Em Base Platform+1
Published
2013-01-17
·
Updated
2013-10-11
·
CVE-2012-5062
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle Enterprise Manager Grid Control EM Base Platform versions 10.2.0.5
Oracle Enterprise Manager Grid Control EM DB Control versions 10.2.0.3 through 11.2.0.3
Description
The issue affects the integrity of the system, related to the User Interface Framework, allowing remote attackers to exploit it via unknown vectors.
Recommendations
For Oracle Enterprise Manager Grid Control EM Base Platform version 10.2.0.5, update to a version that addresses this issue.
For Oracle Enterprise Manager Grid Control EM DB Control versions 10.2.0.3 through 11.2.0.3, update to a version that addresses this issue.
As a temporary workaround, consider restricting access to the User Interface Framework until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Oracle Enterprise Manager Grid Control Em Base Platform
Oracle Enterprise Manager Grid Control