Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
BID:101871
Info
Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
| Bugtraq ID: | 101871 |
| Class: | Unknown |
| CVE: |
CVE-2017-10272 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 15 2017 12:00AM |
| Updated: | Dec 19 2017 10:00PM |
| Credit: | Dmitrii Iudin aka @ret5et of ERPScan. |
| Vulnerable: |
Oracle Tuxedo 12.2.2 Oracle Tuxedo 12.1.3 Oracle Tuxedo 12.1.1 Oracle Tuxedo 11.1.1 Oracle Fusion Middleware - |
| Not Vulnerable: | |
Discussion
Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
Oracle Tuxedo is prone to a remote security vulnerability that affects 'core' component.
The vulnerability can be exploited over the 'Jolt' protocol. The 'core' component is affected.
This vulnerability affects the following supported versions:
11.1.1, 12.1.1, 12.1.3, and 12.2.2
Oracle Tuxedo is prone to a remote security vulnerability that affects 'core' component.
The vulnerability can be exploited over the 'Jolt' protocol. The 'core' component is affected.
This vulnerability affects the following supported versions:
11.1.1, 12.1.1, 12.1.3, and 12.2.2
Exploit / POC
Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Oracle Tuxedo CVE-2017-10272 Remote Security Vulnerability
References:
References:
- Oracle Homepage (Oracle)
- Oracle Security Alert Advisory - CVE-2017-10269 (Oracle)