Unspecified Vulnerability in Oracle Application Testing Suite Affects Oracle Enterprise Manager
CVE-2016-0487

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
21 January 2016

Summary

An unspecified vulnerability exists in the Oracle Application Testing Suite component of Oracle Enterprise Manager Grid Control versions 12.4.0.2 and 12.5.0.2. This flaw could potentially allow remote attackers to compromise the confidentiality and integrity of the system. The vulnerability is reportedly linked to Test Manager for Web Apps and may involve directory traversal sequences that allow the bypassing of authentication through an unspecified URI string.

References

EPSS Score

7% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.