CVE-2010-3594 describes an unspecified vulnerability within the Real User Experience Insight component of Oracle Enterprise Manager Grid Control 6.0. This flaw allows remote attackers to compromise confidentiality and integrity, potentially through SQL injection in rsynclogdird due to improper UTF-8 character escaping during log file processing. With a CVSS score of 6.4 (medium severity), it presents a low-complexity attack vector that does not require authentication. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.0CPE matchmatch criteria | cpe:2.3:a:oracle:enterprise_manager_grid_control:6.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.