Vulnerability Intelligence Report
CVE-2013-2380
Unspecified vulnerability in the Oracle JRockit component in Oracle Fusion Middleware R27.7.4 and earlier and R28.2.6 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this might be a duplicate of CVE-2013-1537 and CVE-2013-2415. If so, then CVE-2013-2380 might be REJECTed in the future.
No Active Exploit Signals
CVSS Base Score
10.0
HIGH
EPSS Probability:2.11%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| oracle | fusion_middleware | all |
| oracle | jrockit | r27.1, r27.2, r27.3, r27.3.1, r28.0.0, r28.0.1, r28.0.2, r28.1.0, r28.1.1, r28.1.3, r28.1.4 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.108%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Oracle · Hosted Service · USA |
| Reserved | 2013-03-05T00:00:00 |
| Published | 2013-04-17T14:00:00 |
| Patch Date | 2013-04-16 |
| Last Updated | 2024-08-06T15:36:46 |
Community Chatter & Buzz