CVE-2013-3803
Oracle Hyperion 11 - Directory Traversal
Severity Score
3.5
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Unspecified vulnerability in the Hyperion BI+ component in Oracle Hyperion 11.1.1.3, 11.1.1.4.107 and earlier, 11.1.2.1.129 and earlier, and 11.1.2.2.305 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Intelligence Service.
Vulnerabilidad sin especificar en el componente Hyperion BI+ en Oracle Hyperion 11.1.1.3, 11.1.1.4.107 y anteriores, 11.1.2.1.129 y anteriores, y 11.1.2.2.305 y anteriores, permite a usuarios autenticados remotamente comprometer la confidencialidad a través de vectores desconocidos relacionados con Intelligence Service.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2013-06-03 CVE Reserved
- 2013-07-17 CVE Published
- 2013-08-02 First Exploit
- 2024-08-06 CVE Updated
- 2024-08-10 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://osvdb.org/95277 | Broken Link | |
http://secunia.com/advisories/54220 | Third Party Advisory | |
http://www.securityfocus.com/bid/61204 | Third Party Advisory | |
http://www.securitytracker.com/id/1028794 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/85664 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/27291 | 2013-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html | 2019-06-11 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oracle Search vendor "Oracle" | Hyperion Search vendor "Oracle" for product "Hyperion" | >= 11.1.1.4 <= 11.1.1.4.107 Search vendor "Oracle" for product "Hyperion" and version " >= 11.1.1.4 <= 11.1.1.4.107" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Hyperion Search vendor "Oracle" for product "Hyperion" | >= 11.1.2.1 <= 11.1.2.1.129 Search vendor "Oracle" for product "Hyperion" and version " >= 11.1.2.1 <= 11.1.2.1.129" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Hyperion Search vendor "Oracle" for product "Hyperion" | >= 11.1.2.2 <= 11.1.2.2.305 Search vendor "Oracle" for product "Hyperion" and version " >= 11.1.2.2 <= 11.1.2.2.305" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Hyperion Search vendor "Oracle" for product "Hyperion" | 11.1.1.3 Search vendor "Oracle" for product "Hyperion" and version "11.1.1.3" | - |
Affected
|