CVE-2012-1710

CRITICAL(9.8)KEVRansomwareElevated Risk

Oracle Fusion Middleware Unspecified Vulnerability

Description

CVE-2012-1710 is a critical vulnerability in the Oracle WebCenter Forms Recognition component of Oracle Fusion Middleware that allows remote attackers to affect the confidentiality, integrity, and availability of the system. The vulnerability resides in the Designer component and can be exploited through unknown attack vectors without requiring authentication. CISA has confirmed active exploitation and flagged CVE-2012-1710 as associated with ransomware campaigns. With an EPSS percentile of 98.2%, this vulnerability is among the most likely to be exploited in the CVE database.

KEV Information

Vendor
Oracle
Product
Fusion Middleware
Date Added
May 25, 2022
Due Date
June 15, 2022
Required Action
Apply updates per vendor instructions.

CVSS Score

Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HOpen in Calculator
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9

Affected Products

VendorProductVersion
oraclefusion middleware10.1.3.5

Multiple CVSS Assessments

Source: [email protected](Primary)
9.8
CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0(Secondary)
9.8
CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

Weakness Type

Since no specific CWE has been assigned to CVE-2012-1710, the underlying weakness type remains formally unspecified. The vulnerability affects the Designer component of Oracle WebCenter Forms Recognition and involves unspecified vectors that allow remote attackers to compromise the system. The lack of detailed vulnerability information suggests the flaw may involve multiple weakness types or a complex attack chain within the Forms Recognition processing pipeline.

Impact Analysis

CVE-2012-1710 impacts all three security domains: confidentiality, integrity, and availability of Oracle WebCenter Forms Recognition systems. A remote attacker can exploit this vulnerability to access sensitive form data and recognition results, modify processing rules and form definitions, and disrupt the availability of the forms recognition service. Oracle Fusion Middleware is deployed in enterprise environments for document processing and data extraction, meaning a compromise can expose sensitive business documents, financial records, and personally identifiable information processed through the system. The EPSS percentile of 98.2% and the confirmed ransomware association indicate that this vulnerability is actively targeted by sophisticated threat actors. The lack of required authentication means any attacker with network access to the affected component can attempt exploitation.

Exploit Maturity

CISA has confirmed active exploitation of CVE-2012-1710 by including it in the Known Exploited Vulnerabilities catalog with a remediation deadline of June 15, 2022. CISA has flagged this vulnerability as associated with ransomware campaigns, indicating it has been leveraged in ransomware attack chains to gain initial access or escalate privileges in enterprise environments running Oracle Fusion Middleware. The EPSS percentile of 98.2% confirms high exploitation likelihood. Oracle Fusion Middleware vulnerabilities are particularly attractive to attackers due to the middleware's central role in enterprise application architectures, where a single compromise can provide access to multiple connected systems and data stores.

Remediation

  1. Apply Oracle Critical Patch Updates that address CVE-2012-1710 as specified in the vendor advisory. CISA's required action is to apply updates per vendor instructions.
  2. If the Oracle WebCenter Forms Recognition component is not actively used, disable or remove it from the Fusion Middleware installation to eliminate the attack surface.
  3. Restrict network access to the Designer component using firewall rules and network segmentation, ensuring it is only accessible from authorized administrative systems.
  4. Monitor Oracle Fusion Middleware logs for suspicious activity targeting the Forms Recognition and Designer components, including unauthorized access attempts and unusual processing patterns.
  5. Conduct a security audit of the Fusion Middleware deployment to identify any other unpatched components and ensure all Critical Patch Updates have been applied across the entire middleware stack.

Technical Details

CVE-2012-1710 targets the Oracle WebCenter Forms Recognition component within Oracle Fusion Middleware, specifically the Designer subcomponent. WebCenter Forms Recognition is used for automated document classification, data extraction, and forms processing in enterprise workflows. The vulnerability allows remote attackers to exploit unspecified vectors in the Designer component to affect confidentiality, integrity, and availability. The attack does not require authentication, meaning any network-accessible instance of the affected component is potentially exploitable. While the specific technical mechanism has not been publicly detailed by Oracle, the comprehensive impact across all three security domains suggests a severe flaw such as remote code execution or complete authentication bypass in the Designer processing logic.

Frequently Asked Questions

Is CVE-2012-1710 being actively exploited?

Yes, CISA has confirmed active exploitation of CVE-2012-1710 and has flagged it as associated with ransomware campaigns. The EPSS percentile of 98.2% confirms high exploitation probability. Organizations running Oracle Fusion Middleware with the WebCenter Forms Recognition component should apply patches immediately.

What products are affected by CVE-2012-1710?

CVE-2012-1710 affects the Oracle WebCenter Forms Recognition component within Oracle Fusion Middleware, specifically the Designer subcomponent. Organizations using Oracle Fusion Middleware for document processing and forms recognition are potentially affected.

How do I fix CVE-2012-1710?

Apply Oracle Critical Patch Updates that address CVE-2012-1710. If the WebCenter Forms Recognition component is not needed, disable or remove it. Restrict network access to the Designer component and ensure all Fusion Middleware components are up to date with the latest security patches.

How severe is CVE-2012-1710?

CVE-2012-1710 has an EPSS percentile of 98.2% and is associated with ransomware campaigns. The vulnerability allows remote attackers to affect confidentiality, integrity, and availability of Oracle Fusion Middleware systems without authentication, making it a critical security issue that requires immediate remediation.

CVSS Score

9.8
CRITICAL(9.8)

EPSS Score

EPSS Score11.64%
EPSS Percentile95.7%

Dates

PublishedMay 3, 2012
Last ModifiedAugust 4, 2026
StatusAnalyzed
CVSS Versionv3.1

Need Help With Vulnerability Management?

Our security experts can help you prioritize and remediate vulnerabilities effectively.