CVE-2012-1710 is a critical, unspecified vulnerability within the Oracle WebCenter Forms Recognition component of Oracle Fusion Middleware 10.1.3.5, specifically impacting its Designer functionality. This vulnerability carries a CVSS score of 9.8, indicating it can be exploited remotely with low complexity and no user interaction, leading to complete compromise of confidentiality, integrity, and availability. It is actively exploited, as confirmed by its presence in the CISA KEV catalog and use in known ransomware campaigns, despite a lack of public exploit code on platforms like Metasploit or ExploitDB. The CVE has garnered significant community discussion, with more mentions than 99% of all CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.1.3.5CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:10.1.3.5:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.