CVE-2012-3133: Oracle Essbase Server

Medium severity, CVSS 6.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors.

Affected products

  • Oracle Essbase Server: version 11.1.2.1 only; version 11.1.2.2 only
  • Oracle Hyperion Interactive Reporting: version 11.1.2.1 only; version 11.1.2.2 only
  • Oracle Hyperion Production Reporting Server: version 11.1.2.1 only; version 11.1.2.2 only
  • Oracle Integration Services Server: version 11.1.2.1 only; version 11.1.2.2 only

Published 2012-12-21. Last modified 2026-06-16.