Vulnerability Name: | CVE-2013-0393 (CCN-81253) | ||||||||
Assigned: | 2012-12-07 | ||||||||
Published: | 2013-01-15 | ||||||||
Updated: | 2018-10-12 | ||||||||
Summary: | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7 and 8.4 allows context-dependent attackers to affect availability via unknown vectors related to Outside In Filters, a different vulnerability than CVE-2013-0418. Per: http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html '2. Outside In Technology is a suite of software development kits (SDKs). It does not have any particular associated protocol. If the hosting software passes data received over the network to Outside In Technology code, the CVSS score would increase to 6.8." | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2013-0393 Source: CCN Type: SA50121 Oracle Outside In Technology Paradox Database Stream Filter Vulnerabilities Source: CCN Type: SA52136 Microsoft FAST Search Server Oracle Outside In Technology Multiple Vulnerabilities Source: CCN Type: Microsoft Security Bulletin MS13-012 Vulnerabilities in Microsoft Exchange Server Could Allow Remote Code Execution (2809279) Source: CCN Type: Microsoft Security Bulletin MS13-061 Vulnerabilities in Microsoft Exchange Server Could Allow Remote Code Execution (2876063) Source: CONFIRM Type: UNKNOWN http://www-01.ibm.com/support/docview.wss?uid=swg21660640 Source: MANDRIVA Type: UNKNOWN MDVSA-2013:150 Source: CCN Type: Oracle Web site Oracle Critical Patch Update Advisory - January 2013 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html Source: CCN Type: BID-57357 Oracle Outside In Technology CVE-2013-0393 Denial Of Service Vulnerability Source: CERT Type: US Government Resource TA13-043B Source: MS Type: UNKNOWN MS13-012 Source: XF Type: UNKNOWN oracle-cpujan2013-dos(81253) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:16202 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |