Vulnerabilities > CVE-2010-3581 - BPEL Console Cross Site Scripting vulnerability in Oracle Fusion Middleware 11.1.1.1.0/11.1.1.2.0

047910
CVSS 3.5 - LOW
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
oracle
exploit available

Summary

Unspecified vulnerability in the BPEL Console component in Oracle Fusion Middleware 11.1.1.1.0 and 11.1.1.2.0 allows remote authenticated users to affect integrity via unknown vectors.

Vulnerable Configurations

Part Description Count
Application
Oracle
2

Exploit-Db

descriptionOracle Fusion Middleware 10.1.2/10.1.3 BPEL Console Cross Site Scripting Vulnerability. CVE-2010-3581. Webapps exploit for jsp platform
idEDB-ID:34834
last seen2016-02-04
modified2010-10-12
published2010-10-12
reporterAlexander Polyakov
sourcehttps://www.exploit-db.com/download/34834/
titleOracle Fusion Middleware 10.1.2/10.1.3 BPEL Console Cross-Site Scripting Vulnerability

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/95224/DSECRG-09-032.txt
idPACKETSTORM:95224
last seen2016-12-05
published2010-10-28
reporterSh2kerr
sourcehttps://packetstormsecurity.com/files/95224/Oracle-BPEL-Console-10.1.3.3.0-Cross-Site-Scripting.html
titleOracle BPEL Console 10.1.3.3.0 Cross Site Scripting