CVE-2010-4437

high

Description

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 9.0, 9.1, 9.2.4, 10.0.2, 10.3.2, and 10.3.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Servlet Container.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/64764

http://www.vupen.com/english/advisories/2011/0143

http://www.securitytracker.com/id?1024981

http://www.securityfocus.com/bid/45852

http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.html

http://securityreason.com/securityalert/8126

http://secunia.com/advisories/42975

http://osvdb.org/70571

Details

Source: Mitre, NVD

Published: 2011-01-19

Updated: 2025-04-11

Risk Information

CVSS v2

Base Score: 5.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 7.2

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N

Severity: High

EPSS

EPSS: 0.48894