Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:ORACLE:ORACLE-FATWIRE-ID

Severity

Minor

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Oracle WebCenter FatWire Content Server Improper Access Control

Release Date

2019/04/11

Update Number

3161

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: Oracle WebCenter FatWire Content Server Improper Access Control


This signature detects attempts to exploit a known vulnerability against Oracle WebCenter FatWire Content Server. A successful attack can lead to sensitive information disclosure& sql injection.

Extended Description

Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Support Tools). Supported versions that are affected are 11.1.1.8.0 and 12.2.1.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle WebCenter Sites executes to compromise Oracle WebCenter Sites. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle WebCenter Sites accessible data as well as unauthorized read access to a subset of Oracle WebCenter Sites accessible data. Note: Please refer to Doc ID My Oracle Support Note 2318213.1 for instructions on how to address this issue. CVSS 3.0 Base Score 4.0 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).

Affected Products

  • Oracle webcenter_sites 11.1.1.8.0
  • Oracle webcenter_sites 12.2.1.2.0

References

  • CVE: CVE-2017-10033
  • URL: http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out