Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect confidentiality via unknown vectors related to Import Server. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can read arbitrary files via a full pathname in the first argument to the ImportBodyText method in the EasyMail ActiveX control (emsmtp.dll).
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2024-08-07T03:18:51.583Z
Reserved: 2010-09-20T00:00:00
Link: CVE-2010-3595
No data.
Status : Deferred
Published: 2011-01-19T16:00:02.797
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-3595
No data.
OpenCVE Enrichment
No data.
Weaknesses