Oracle Outside In '.cdr' File Remote Code Execution Vulnerability

Bugtraq ID: 48766
Class: Design Error
CVE: CVE-2011-2264
Remote: Yes
Local: No
Published: Jul 19 2011 12:00AM
Updated: Jan 24 2012 12:00PM
Credit: Oracle
Vulnerable: Symantec Enterprise Vault 9.0.2
Symantec Enterprise Vault 9.0.1
Symantec Enterprise Vault 9.0
Symantec Enterprise Vault 8.0 SP5
Symantec Enterprise Vault 8.0 SP4
Symantec Enterprise Vault 8.0
Symantec Enterprise Vault 7.5
Symantec Enterprise Vault 10.0
Oracle Fusion Middleware 8.3.5.0
Oracle Fusion Middleware 8.3.2.0
Novell GroupWise Internet Agent 8.0
Novell Groupwise 6.5.6
Novell Groupwise 6.5.4
Novell Groupwise 6.5.3
Novell Groupwise 6.5.2
Novell Groupwise 6.5 SP6 Update 1
Novell Groupwise 6.5 SP6
Novell Groupwise 6.5 Post SP6
Novell Groupwise 6.5 SP5
Novell Groupwise 6.5 SP4
Novell Groupwise 6.5 SP3
Novell Groupwise 6.5 SP2
Novell Groupwise 6.5 SP1
Novell Groupwise 6.5
Novell Groupwise 6.0 SP4
Novell Groupwise 6.0 SP3
Novell Groupwise 6.0 SP2
Novell Groupwise 6.0 SP1
Novell Groupwise 6.0
Novell Groupwise 5.5
Novell Groupwise 5.2
- Novell Netware 5.0
- Novell Netware 4.11
Novell Groupwise 8.02 HP2
Novell Groupwise 8.02 HP1
Novell Groupwise 8.02
Novell Groupwise 8.01x
Novell Groupwise 8.0 SP2
Novell Groupwise 8.0 SP1
Novell Groupwise 8.0 HP2
Novell Groupwise 8.0 HP1
Novell Groupwise 8.0
Novell Groupwise 6.5 SP6 Update 3
Novell Groupwise 5.57e
- Novell Netware 5.0
- Novell Netware 4.11
NewSoft Presto! PageManager 9
McAfee Host Data Loss Prevention 9.0
McAfee GroupShield 7.0.716.101
MarkLogic Server 0
Kroll Ontrack PowerControls 0
Kroll Ontrack EasyRecovery 0
Kamel Software Fastlook 2009 0
IBM WEB Interface for Content Management 1.0.4
IBM WEB Interface for Content Management 1.0.3
IBM WEB Interface for Content Management 1.0.2
IBM WEB Interface for Content Management 1.0.1
IBM Production Imaging Edition 5.0
IBM InfoSphere Classification Module 8.7
IBM FileNet Integrated Document Management Desktop 4.0.3
IBM FileNet Integrated Document Management Desktop 4.0.2
IBM FileNet Content Manager 5.1
IBM FileNet Content Manager 5.0
IBM FileNet Capture 5.2.1
IBM FileNet Capture 5.2
IBM eDiscovery Manager 2.2
IBM eDiscovery Analyzer 2.2
IBM Document Manager 8.4.2
IBM Document Manager 2.2
IBM Content Manager Enterprise Edition 8.4.3
IBM Content Integrator 8.5.1
IBM Content Integrator 8.6
IBM Content Collector for Microsoft SharePoint 2.2
IBM Content Collector for Microsoft SharePoint 2.1.1
IBM Content Collector for File Systems 2.2
IBM Content Collector for File Systems 2.1.1
IBM Content Collector for Email 2.2
IBM Content Collector for Email 2.1.1
IBM Content Analytics 2.2
IBM Content Analytics 2.1
IBM CommonStore for Lotus Domino 8.4
IBM CommonStore for Exchange 8.4
IBM Classification Module 8.6
HP Trim 0
Guidance Software EnCase Forensic V4 4.18 a
Guidance Software EnCase Forensic 6.14
Guidance Software EnCase Forensic 6.12
Guidance Software EnCase Forensic 5.0
Guidance Software EnCase Enterprise 4.16
Guidance Software EnCase Enterprise 4.0
Guidance Software EnCase 0
Cisco Security Agent 5.2 .285
Cisco Security Agent 5.1 .79
Cisco Security Agent 5.0 .193
Cisco Security Agent 4.5.1 .657
Cisco Security Agent 4.5.1 .639
Cisco Security Agent 4.5.1
Cisco Security Agent 4.5
Cisco Security Agent 4.0.3 .728
Cisco Security Agent 4.0.3
Cisco Security Agent 4.0.2
Cisco Security Agent 4.0.1
Cisco Security Agent 4.0
Cisco Security Agent 2.1
Cisco Security Agent 6.0.2.145
Cisco Security Agent 6.0.1.132
Cisco Security Agent 6.0(2.099)
Cisco Security Agent 6.0(1.126)
Cisco Security Agent 6.0
Cisco Security Agent 5.2.0.296
Cisco Security Agent 5.2
Cisco Security Agent 5.1.0.117
Cisco Security Agent 5.1
Cisco Security Agent 5.0.0.201
Cisco Security Agent 5.0
Cisco Security Agent 4.5.1.659
Cisco Security Agent 3.x
Avantstar Inc. Quick View Plus 11
ACD Systems Inc ACDSee Canvas 12
AccessData FTK 3.2
AccessData Forensic Toolkit 8.3.2.0
AccessData Forensic Toolkit 3.2
Not Vulnerable: Novell Groupwise 8.0 HP3


 

Privacy Statement
Copyright 2010, SecurityFocus