Unspecified Vulnerability in Oracle Agile PLM Component Affects Oracle Supply Chain Products
CVE-2016-5523
8.8HIGH
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 25 October 2016
Summary
An unspecified vulnerability within the Oracle Agile PLM component of the Oracle Supply Chain Products Suite versions 9.3.4 and 9.3.5 facilitates potential risks where remote authenticated users may impact the confidentiality, integrity, and availability of the system. This arises through vulnerabilities associated with the AutoVue Java Applet, which necessitates urgent attention to mitigate possible threats.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved