CVE-2012-0549 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 59% (pctl 99)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affect confidentiality, integrity, and availability, related to Desktop API.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 59.05% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-05-03 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| oracle | supply chain products suite |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Oracle AutoVue - ActiveX Control SetMarkupMode Buffer Overflow (Metasploit) | 2012-08-06 |
References
- http://secunia.com/advisories/48875
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html
- http://www.securitytracker.com/id?1026937
- http://secunia.com/advisories/48875
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html
- http://www.securitytracker.com/id?1026937
→ the Explorer · watch your stack · NVD