CVE-2012-3153: Oracle Forms & Reports RCE (CVE-2012-3152 & CVE-2012-3153)

HoneyLabs honeypots recorded 2 probes matching CVE-2012-3153 from 1 distinct source IP addresses in the last 7 days. Severity is rated medium.

Request paths that identify it

  • /reports/rwservlet/showenv
  • /reports/rwservlet?report=test.rdf&desformat=html&destype=cache&JOBTYPE=rwurl&URLPARAMETER=file:

Addresses probing it

Source IPProbesNetworkCountry
130.12.180.772Omegatech LTDThe Netherlands

Networks it comes from

ASNOrganisationProbesSource IPs
AS202412Omegatech LTD21

Captured requests

  • /reports/rwservlet/showenv

HTTP client fingerprints (JA4H)

  • ge11nn0200_fdb5000be5f4

CVE report

CVE report

Open a specific CVE from the CVE tracker.