Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2012-1766

13
FAUCET Score

CVE-2012-1766 describes an unspecified vulnerability within the Oracle Outside In Technology component of Oracle Fusion Middleware versions 8.3.5 and 8.3.7. This flaw allows context-dependent attackers to impact system availability through unknown vectors related to Outside In Filters. The vulnerability has a low severity, with a CVSS score of 2.1, indicating that an attacker would require local access to exploit it, and the potential impact is limited to partial availability loss. There is no impact on confidentiality or integrity. Currently, there is no evidence of active exploitation, and no public exploit code is available through Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are also virtually nonexistent.

Impacted Technologies

VendorProductVersion(s)CPE
8.3.5.0CPE matchmatch criteria
cpe:2.3:a:oracle:fusion_middleware:8.3.5.0:*:*:*:*:*:*:*
8.3.7.0CPE matchmatch criteria
cpe:2.3:a:oracle:fusion_middleware:8.3.7.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

2.1LOW

AV:L/AC:L/Au:N/C:N/I:N/A:P

Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
2.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
0.47%
Probability of exploitation in next 30 days
EPSS Percentile
38.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0047 is in the 71st percentile among its peer group of 2,096 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (1)

oraclevendor investigatingvia nvd_reference
View patch

References

blogs.technet.com / b/srd/archive/2012/07/24/more-information-on-security-advisory-2737111.aspx
docs.microsoft.com / en-us/security-updates/securitybulletins/2012/ms12-058
docs.microsoft.com / en-us/security-updates/securitybulletins/2012/ms12-067
exchange.xforce.ibmcloud.com / vulnerabilities/76999
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15724
technet.microsoft.com / security/advisory/2737111
www-01.ibm.com / support/docview.wss
kb.cert.org / vuls/id/118913
US Government Resource
mandriva.com / security/advisories
oracle.com / technetwork/topics/security/cpujul2012-392727.html
Vendor Advisory
securityfocus.com / bid/54531
securitytracker.com / id