CVE-2011-2264
medium · 4.4Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.2.0 and 8.3.5.0 allows context-dependent attackers to affect confidentiality, integrity, and availability via unknown vectors related to Outside In Filters. NOTE: the previous information was obtained from the July 2011 CPU. Oracle has not commented on claims from a reliable third party that this is a stack-based buffer overflow in the imcdr2.flt library for the CorelDRAW parser.
4.4
CVSS
31.1%
EPSS (exploit prob.)
98th
EPSS percentile
2011-07-21
Published
AV:L/AC:M/Au:N/C:P/I:P/A:P
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| oracle | fusion_middleware | 8.3.2.0 |
| oracle | fusion_middleware | 8.3.5.0 |
Check a specific version with /api/v1/cve/match.
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21660640
- http://www.kb.cert.org/vuls/id/103425
- http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html
- http://www.us-cert.gov/cas/techalerts/TA11-201A.html
- http://www-01.ibm.com/support/docview.wss?uid=swg21660640
- http://www.kb.cert.org/vuls/id/103425
- http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html
- http://www.us-cert.gov/cas/techalerts/TA11-201A.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2011-2264