CVE-2012-3186 describes an unspecified vulnerability within the Advanced UI component of Oracle WebCenter Sites, affecting multiple versions of Oracle Fusion Middleware. This flaw allows remote authenticated users to compromise confidentiality and integrity. With a CVSS score of 4.9, it requires authentication and moderate attack complexity, but does not impact availability. While no active exploitation is confirmed and there's minimal community discussion, an exploit for multiple WebCenter Sites vulnerabilities, including this one, is available on ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
7.0CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:7.0:*:*:*:*:*:*:* | ||
7.0.1CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:7.0.1:*:*:*:*:*:*:* | ||
7.0.2CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:7.0.2:*:*:*:*:*:*:* | ||
7.0.3CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:7.0.3:*:*:*:*:*:*:* | ||
7.5CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:7.5:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:S/C:P/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.