Cyber Resilience

CVE-2012-1710

Oracle Fusion Middleware 10.1.3.5

CISA KEVActive ExploitationEUVD ExploitedRansomware-linked
Published
03 May 2012
Modified
04 August 2026
KEV Added
25 May 2022
Patch / advisory
CVSS Score v3.1 9.8
Click a component to see what it means
Raw vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.12 96th percentile
Risk Priority 97 floored blend · peak EPSS

Summary

CVE-2012-1710 is a critical-severity an unspecified weakness vulnerability in Oracle Fusion Middleware. Its CVSS base score is 9.8 (Critical).

Operationally, ranked in the top 4% of CVEs by exploit likelihood; CISA has added it to the Known Exploited Vulnerabilities catalog.

Deeper analysis AI-assisted summary

Synthesised by an AI model from the NVD description and linked references — a reading aid, not an authoritative source.

CVE-2012-1710 is an unspecified vulnerability in the Oracle WebCenter Forms Recognition component of Oracle Fusion Middleware version 10.1.3.5. It affects the Designer module and is distinct from CVE-2012-1709, with the flaw allowing impacts to confidentiality, integrity, and availability.

Remote attackers can exploit the issue over the network without authentication or user interaction, resulting in complete compromise of the affected component according to its CVSS 3.1 base score of 9.8.

Oracle's April 2012 Critical Patch Update addresses the vulnerability, while additional references such as SecurityTracker ID 1026949 and Mandriva advisories provide further tracking information for affected deployments.

EU & UK References

Vulnerability Data

Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Designer, a different vulnerability than CVE-2012-1709.

CWE(s)
KEV Date Added
25 May 2022

Related Threats

CVEs Like This One

CVE-2012-3152Same product: Oracle Fusion Middlewareboth on KEV
CVE-2012-0518Same product: Oracle Fusion Middlewareboth on KEV
CVE-2023-21994Same product: Oracle Fusion Middleware
CVE-2024-21192Same product: Oracle Fusion Middleware
CVE-2024-21215Same product: Oracle Fusion Middleware
CVE-2024-21205Same product: Oracle Fusion Middleware
CVE-2026-35232Same product: Oracle Fusion Middleware
CVE-2024-21191Same product: Oracle Fusion Middleware
CVE-2024-21190Same product: Oracle Fusion Middleware
CVE-2026-35252Same product: Oracle Fusion Middleware

Affected Assets

oracle
fusion middleware
10.1.3.5

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References