This allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Web Services Security.
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3568
The original article can be found at: http://www.securityfocus.com/bid/51463/info
Vulnerable Systems:
*Oracle Web Services Manager 11.1.1.5
*Oracle Web Services Manager 11.1.1.4
*Oracle Web Services Manager 11.1.1.3
Oracle Web Services Manager is prone to a remote vulnerability in Oracle Web Services Manager.
The vulnerability can be exploited over the 'HTTP' protocol. The 'Web Services Security' sub component is affected.
Vendor Status:
Orcale had since issued an update for this vulnerability.
Patch Availability:
http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
CVE Information:
CVE-2011-3568
Disclosure Timeline:
2012-January-23 Rev 3. Updated JD Edwards information for One World Tools SP24
2012-January-18 Rev 2. Updated credit information
2012-January-17 Rev 1. Initial Release
Please enable JavaScript to view the comments powered by Disqus.
blog comments powered by