VYPR
Unrated severityNVD Advisory· Published Apr 13, 2010· Updated Apr 29, 2026

CVE-2010-0859

CVE-2010-0859

Description

Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 ATG RUP6 allows remote attackers to affect confidentiality and integrity via unknown vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Unspecified vulnerability in Oracle E-Business Suite 11.5.10.2 ATG RUP6 allows remote attackers to compromise confidentiality and integrity.

Vulnerability

CVE-2010-0859 is an unspecified vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite, specifically in version 11.5.10.2 ATG RUP6. The official description indicates that the vulnerability is exploitable remotely via unknown vectors. The US-CERT advisory [1] confirms that Oracle E-Business Suite Release 11i versions 11.5.10 and 11.5.10.2 are among the affected products in the April 2010 Critical Patch Update.

Exploitation

An attacker can exploit this vulnerability remotely without requiring authentication, as the vectors are unspecified but accessible over the network. The exact steps are not disclosed, but the vulnerability is triggered through the Oracle Application Object Library component, likely via crafted HTTP requests or other network-based interactions.

Impact

Successful exploitation allows a remote attacker to affect the confidentiality and integrity of the target system. This could lead to unauthorized disclosure of sensitive information or unauthorized modification of data. No impact on availability is reported.

Mitigation

Oracle addressed this vulnerability in the Critical Patch Update for April 2010 [1]. Organizations should apply the relevant patch provided by Oracle for Oracle E-Business Suite Release 11i. No workarounds are documented; upgrading to the patched version is the recommended mitigation.

AI Insight generated on May 23, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.