Vulnerability Name:

CVE-2010-3591 (CCN-64768)

Assigned:2010-09-20
Published:2011-01-19
Updated:2018-10-10
Summary:Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Internal Operations.
Note: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can overwrite or delete arbitrary files via a full pathname in the second argument to the DownloadSingleMessageToFile method in the EMPOP3Lib ActiveX component (empop3.dll).
CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
7.3 High (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
7.3 High (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2010-3591

Source: MISC
Type: UNKNOWN
http://dsecrg.com/pages/vul/show.php?id=305

Source: CCN
Type: SA42976
Oracle Document Capture Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
42976

Source: CCN
Type: SECTRACK ID: 1024981
Oracle Fusion Middleware Flaws Let Remote Users Execute Arbitrary Code, Access and Modify Data, and Deny Service

Source: EXPLOIT-DB
Type: UNKNOWN
16055

Source: CCN
Type: Oracle Critical Patch Update Advisory - January 2011
Oracle Critical Patch Update Advisory - January 2011

Source: CONFIRM
Type: Vendor Advisory
http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.html

Source: CCN
Type: OSVDB ID: 70537
Oracle Fusion Middleware Document Capture ActiveBar2Library ActiveX (Actbar2.ocx) SaveLayoutChanges Method Arbitrary File Overwrite

Source: BUGTRAQ
Type: UNKNOWN
20110125 [DSECRG-11-005] Oracle Document Capture empop3.dll - insecure method

Source: BID
Type: UNKNOWN
45851

Source: CCN
Type: BID-45851
Oracle Document Capture CVE-2010-3591 Multiple Remote Vulnerabilities

Source: SECTRACK
Type: UNKNOWN
1024981

Source: VUPEN
Type: Vendor Advisory
ADV-2011-0143

Source: XF
Type: UNKNOWN
oracle-document-internaloperations-code-exec(64768)

Source: XF
Type: UNKNOWN
oracle-document-internaloperations-code-exec(64768)

Source: CCN
Type: ICSA-22-263-01
Hitachi Energy PROMOD IV

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [01-26-2011]

Vulnerable Configuration:Configuration 1:
  • cpe:/a:oracle:fusion_middleware:10.1.3.4:*:*:*:*:*:*:*
  • OR cpe:/a:oracle:fusion_middleware:10.1.3.5:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    oracle fusion middleware 10.1.3.4
    oracle fusion middleware 10.1.3.5