Lucene search

K
cve[email protected]CVE-2012-3133
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-3133

2022-10-0316:15:24
CWE-119
web.nvd.nist.gov
18
cve-2012-3133
buffer overflow
datadirect odbc driver
oracle hyperion
essbase server
nvd
security vulnerability

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

58.9%

Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors.

Affected configurations

NVD
Node
oraclehyperion_interactive_reportingMatch11.1.2.1
OR
oraclehyperion_interactive_reportingMatch11.1.2.2
Node
oracleessbase_serverMatch11.1.2.1
OR
oracleessbase_serverMatch11.1.2.2
Node
oraclehyperion_production_reporting_serverMatch11.1.2.1
OR
oraclehyperion_production_reporting_serverMatch11.1.2.2
Node
oracleintegration_services_serverMatch11.1.2.1
OR
oracleintegration_services_serverMatch11.1.2.2

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

58.9%

Related for CVE-2012-3133