Vulnerability record · CVE-2012-1710 · published 3 May 2012
CVE-2012-1710: Oracle Fusion Middleware WebCenter Forms Recognition unspecified flaw
Oracle · Fusion Middleware
CVE-2012-1710 is an unspecified vulnerability in the Oracle WebCenter Forms Recognition component of Oracle Fusion Middleware 10.1.3.5, reachable through unknown vectors related to Designer. It is distinct from CVE-2012-1709. Because the flaw is unspecified, the exact root cause is not documented, but the record rates it critical and CISA lists it as exploited.
Description
Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Designer, a different vulnerability than CVE-2012-1709.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Automated analysis
critical priorityCVSS 9.8 with network, unauthenticated, no-interaction access plus CISA KEV listing and known ransomware use make this an urgent remediation target despite the thin technical description.
What it is
CVE-2012-1710 is an unspecified vulnerability in the Oracle WebCenter Forms Recognition component of Oracle Fusion Middleware 10.1.3.5, reachable through unknown vectors related to Designer. It is distinct from CVE-2012-1709. Because the flaw is unspecified, the exact root cause is not documented, but the record rates it critical and CISA lists it as exploited.
Impact
A successful attack can affect confidentiality, integrity and availability, meaning an unauthenticated remote attacker could read, alter or disrupt data handled by the affected component. The full scope of what is exposed is not described in the record.
Attack surface
The CVSS vector is network-reachable with no privileges and no user interaction, so the component is exposed to remote unauthenticated requests. The description gives no further detail on the specific interface or protocol involved.
Exploitation
CISA added this CVE to the Known Exploited Vulnerabilities catalog on 2022-05-25 with a due date of 2022-06-15 and flags known ransomware campaign use. EPSS puts 30-day exploitation probability at about 11.5 percent (95.8th percentile).
What to do
- Apply the Oracle Critical Patch Update referenced in the vendor advisory (cpuapr2012-366314) or a later supported patch level.
- If WebCenter Forms Recognition is not required, disable or remove the component and restrict network access to it.
- Place the affected Fusion Middleware deployment behind access controls so only trusted networks and users can reach it.
- Monitor CISA KEV guidance and vendor advisories for updated remediation instructions, since the vulnerability details are unspecified.
Detection
- Review web and application logs for anomalous requests to WebCenter Forms Recognition or Designer endpoints from unexpected sources.
- Alert on exploitation attempts or post-exploitation behavior tied to known ransomware activity, given the KEV ransomware flag.
- Inventory internet-facing or broadly reachable Fusion Middleware 10.1.3.5 instances and confirm patch status against the vendor advisory.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Exploitation in the wild
CISA added CVE-2012-1710 to the Known Exploited Vulnerabilities catalog on 25 May 2022 as "Oracle Fusion Middleware Unspecified Vulnerability". CISA reports known use in ransomware campaigns. Required action: Apply updates per vendor instructions. Federal deadline 15 June 2022.
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.mandriva.com/security/advisories?name=MDVSA-2013:150 | Broken Link |
| http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html | PatchVendor Advisory |
| http://www.securitytracker.com/id?1026949 | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.mandriva.com/security/advisories?name=MDVSA-2013:150 | Broken Link |
| http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html | PatchVendor Advisory |
| http://www.securitytracker.com/id?1026949 | Broken LinkThird Party AdvisoryVDB Entry |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2012-1710 | US Government Resource |
Track CVE-2012-1710 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2012-1710), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.