logo

Fox-IT discovers security bugs in Oracle Software

ID: b4782732-2134-5762-9a4f-4239ebbdcf84

STIX ID: report--b4782732-2134-5762-9a4f-4239ebbdcf84

Feed Name: Fox-IT blog

Threat Score
30/100

Date Published: 2012-10-18

Date Updated: 2026-04-27

Author: Fox It

...
...

Fox-IT disclosed two security issues in Oracle Application Server Single Sign-On (CVE-2012-3175: open redirect; CVE-2012-0518: three XSS flaws) which can be abused for phishing and session/password theft; Oracle rated them CVSS 4.3 and has issued patches, and Fox-IT recommends applying the Critical Patch Update promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.