CVE-2013-3763 EXPLOIT
5.5
MEDIUM · CVSS 2.0 · EPSS 59.8% (pctl 99)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in the Oracle Endeca Server component in Oracle Fusion Middleware 7.4.0 and 7.5.1.1 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2013-3764.
Scoring
| CVSS | 5.5 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:N |
| EPSS | 59.84% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2013-07-17 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| oracle | fusion middleware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Oracle Endeca Server - Remote Command Execution (Metasploit) | 2013-08-26 |
References
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.securitytracker.com/id/1028801
- http://www.zerodayinitiative.com/advisories/ZDI-13-190/
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.securitytracker.com/id/1028801
- http://www.zerodayinitiative.com/advisories/ZDI-13-190/
→ the Explorer · watch your stack · NVD