Unspecified Vulnerability in Oracle E-Business Suite 12.1.3
CVE-2016-3525

5.9MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
21 July 2016

Summary

A fault in the Oracle Applications Manager component of Oracle E-Business Suite 12.1.3 enables remote attackers to compromise the confidentiality of sensitive data. This vulnerability is related to the management of cookies, which could be exploited to gain unauthorized access to user information.

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.