Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:STC:ACTIVEX:ORCLE-WEBCENTR

Severity

High

Recommended

Yes

Recommended Action

Drop

Category

HTTP

Keywords

Oracle WebCenter Content CheckOutAndOpen.dll ActiveX Control Code Execution

Release Date

2013/08/12

Update Number

2289

Supported Platforms

di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Oracle WebCenter Content CheckOutAndOpen.dll ActiveX Control Code Execution


This signature detects attempts to use unsafe ActiveX controls in Oracle WebCenter. An attacker can create a malicious Web site containing Web pages with dangerous ActiveX controls, which if accessed by a victim, allows the attacker to gain control of the victim's client browser.

Extended Description

Unspecified vulnerability in the Oracle WebCenter Content component in Oracle Fusion Middleware 10.1.3.5.1 and 11.1.1.6.0 allows remote authenticated users to affect availability via unknown vectors related to Content Server.

Affected Products

  • oracle fusion_middleware 10.1.3.5.1
  • oracle fusion_middleware 11.1.1.6.0

References

  • BugTraq: 59122
  • CVE: CVE-2013-1559

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out