CVE-2010-3599: Critical severity Oracle Fusion Middleware vulnerability
Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect integrity and availability via unknown vectors related to Import Server. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can overwrite arbitrary files and execute arbitrary code via a full pathname in the first argument to the WriteJPG method in the NCSECWLib ActiveX control.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3599?
CVE-2010-3599 has an unspecified severity rating that affects the integrity and availability of Oracle Fusion Middleware.
How do I fix CVE-2010-3599?
To fix CVE-2010-3599, it is recommended to update Oracle Fusion Middleware to the latest available version.
Which products are affected by CVE-2010-3599?
CVE-2010-3599 affects Oracle Fusion Middleware versions 10.1.3.4 and 10.1.3.5.
What type of attackers can exploit CVE-2010-3599?
CVE-2010-3599 can be exploited by remote attackers.
What components of Oracle Fusion Middleware are impacted by CVE-2010-3599?
The vulnerability specifically affects the Oracle Document Capture component related to the Import Server.