VulnerabilityModified
CVE-2012-0549
Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affect confidentiality, integrity, and availability, related to Desktop API.
HIGH 7.5EPSS 59.0%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 59.0%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affect confidentiality, integrity, and availability, related to Desktop API.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 59.05% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- oracle/supply chain products suite
- Source
- secalert_us@oracle.com
References
- http://secunia.com/advisories/48875
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.htmlVendor Advisory
- http://www.securitytracker.com/id?1026937
- http://secunia.com/advisories/48875
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.htmlVendor Advisory
- http://www.securitytracker.com/id?1026937
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.