|
|
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId= CVE-2011-3506
The original article can be found at: http://www.securityfocus.com/bid/50252/discuss
|
|
Vulnerable Systems:
* Oracle Siebel CRM Core and Apps 8.1.1
Oracle Sun Products Suite is prone to a remote vulnerability in Oracle OpenSSO.
The vulnerability can be exploited over the 'HTTP' protocol. The 'Authentication' sub component is affected.
Vendor Status:
Oracle has issued an update to correct this vulnerability.
Patch Availability:
http://www.oracle.com/technetwork/topics/security/cpuoct2011-330135.html
CVE Information:
CVE-2011-3506
Disclosure Timeline:
2011-November-10 Rev 4. Changed CVSS Score for CVE-2011-3512 to 6.5
2011-October-20 Rev 3. Changed CVSS Score for CVE-2011-2301 to 8.5
2011-October-18 Rev 2. Changed CVE for Oracle Thesaurus Management System from CVE-2011-3538 to CVE-2011-2323
2011-October-18 Rev 1. Initial Release
|
|