Unspecified Vulnerability in Oracle Agile PLM Component Affects Oracle Supply Chain Products
CVE-2016-5523

8.8HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
25 October 2016

What is CVE-2016-5523?

An unspecified vulnerability within the Oracle Agile PLM component of the Oracle Supply Chain Products Suite versions 9.3.4 and 9.3.5 facilitates potential risks where remote authenticated users may impact the confidentiality, integrity, and availability of the system. This arises through vulnerabilities associated with the AutoVue Java Applet, which necessitates urgent attention to mitigate possible threats.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2016-5523 : Unspecified Vulnerability in Oracle Agile PLM Component Affects Oracle Supply Chain Products