CVE-2013-1509 EXPLOIT
4.0
MEDIUM · CVSS 2.0 · EPSS 2.2% (pctl 82)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 7.6.2, 11.1.1.6.0, and 11.1.1.6.1 allows remote authenticated users to affect integrity via unknown vectors related to WebCenter Sites.
Scoring
| CVSS | 4.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:S/C:N/I:P/A:N |
| EPSS | 2.21% — more likely to be exploited than 82% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2013-04-17 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| oracle | fusion middleware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Oracle WebCenter Sites Satellite Server - HTTP Header Injection | 2013-04-18 |
References
- http://archives.neohapsis.com/archives/bugtraq/2013-04/0189.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
- http://archives.neohapsis.com/archives/bugtraq/2013-04/0189.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
→ the Explorer · watch your stack · NVD