Unspecified Vulnerability in Oracle GlassFish Server of Oracle Fusion Middleware
CVE-2016-3607

9.8CRITICAL

Key Information:

Vendor
Oracle
Vendor
CVE Published:
21 July 2016

Summary

An unspecified vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware could allow remote attackers to compromise the confidentiality, integrity, and availability of the affected system. This vulnerability is associated with vectors related to the Web Container, enabling potential exploitation by threat actors if the server is not adequately secured. Organizations utilizing affected versions should ensure they have the latest updates and follow best practices to mitigate risks.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.