Unspecified Vulnerability in Oracle Virtualization Impacting Secure Global Desktop
CVE-2016-3613
9.8CRITICAL
Summary
An unspecified vulnerability exists in the Oracle Secure Global Desktop component of Oracle Virtualization. This flaw allows remote attackers to impact the confidentiality, integrity, and availability of the affected systems. It is associated with vectors related to OpenSSL, posing significant security risks for users running versions 4.63, 4.71, and 5.2 of the product. Administrators are advised to assess their systems and apply available security patches as necessary to mitigate potential exploits.
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved