QID 730556

Date Published: 2022-07-07

QID 730556: Oracle Fusion Middleware BI Publisher Denial of Service (DoS) Vulnerability (cpuapr2012)

Oracle Fusion Middleware is the digital business platform for the enterprise and the cloud.

Affected Versions:
Oracle Fusion Middleware (BI Publisher) 10.1.3.5.x

QID Detection Logic (Unauthenticated):
This checks for vulnerable version of middleware.

It allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Designer.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Oracle has provided a solution to the reported vulnerability. It is recommended that users update their product installations using the instructions provided in the Oracle Advisory. Refer to Oracle security advisory cpuapr2012 to address this vulnerability and obtain further details.
    Vendor References

    CVEs related to QID 730556

    Software Advisories
    Advisory ID Software Component Link
    cpuapr2012 URL Logo www.oracle.com/security-alerts/cpuapr2012.html