Junglewise Threat Intelligence

CVE-2012-0518: Oracle Fusion Middleware Unspecified Vulnerability

CVE-2012-0518 · Severity: critical · CVSS 4.7 · Exploited in the wild · Published 2022-03-28

Technologies: Oracle Fusion Middleware. Vendors: Oracle.

Executive brief

An unspecified vulnerability in the Oracle Application Server Single Sign-On component of Oracle Fusion Middleware allows remote attackers to impact integrity via unknown vectors related to redirects. This open redirect flaw is distinct from CVE-2012-3175.

Affected products

  • Oracle Application Server Single Sign-On 10.1.4.3.0

Timeline

  • 2012-10-16: disclosed: NVD Published Date
  • 2012-10-16: patched: Oracle Critical Patch Update October 2012
  • 2022-03-28: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2022-03-28: exploited: Confirmed exploited in the wild per CISA KEV entry

Related threats