CVE-2011-0883
Status: ModifiedMedium (4)—
Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.2.3, 10.1.3.5, 10.1.4.0.1, and 10.1.4.3 allows remote authenticated users to affect integrity, related to Servlet Runtime in OC4J.
CVSS
- Version: 2.0
- Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N
- Base score: 4
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.86%
- Percentile among all scored CVEs: 57
- Score date: 10/7/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- NVD-CWE-noinfo
References
Raw JSON (NVD)
Show
{
"id": "CVE-2011-0883",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:S/C:N/I:P/A:N",
"authentication": "SINGLE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "secalert_us@oracle.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2011-07-20T22:55:01.767",
"references": [
{
"url": "http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.us-cert.gov/cas/techalerts/TA11-201A.html",
"tags": [
"US Government Resource"
],
"source": "secalert_us@oracle.com"
},
{
"url": "http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.us-cert.gov/cas/techalerts/TA11-201A.html",
"tags": [
"US Government Resource"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.2.3, 10.1.3.5, 10.1.4.0.1, and 10.1.4.3 allows remote authenticated users to affect integrity, related to Servlet Runtime in OC4J."
},
{
"lang": "es",
"value": "Vulnerabilidad no especificada en los Oracle Containers para el componente J2EE de Oracle Fusion Middleware v10.1.2.3, v10.1.3.5, v10.1.4.0.1 y v10.1.4.3 permite a usuarios remotos autenticados afectar a la integridad, relacionados con Servlet Runtime en OC4J."
}
],
"lastModified": "2026-06-16T23:28:15.063",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:10.1.2.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "80B71ADB-2FB5-4F9E-B3B8-868EC839AED7"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:10.1.3.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "17FCAA6C-F1A6-469D-9449-9A99D3E70A70"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:10.1.4.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8ACBC85B-145C-482C-BD5A-E97F95B22299"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:10.1.4.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "410C2981-D85A-4EF2-A335-0FB413DC74A2"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secalert_us@oracle.com"
}