Local User Vulnerability in Oracle Retail Xstore Payment Component
CVE-2016-5540

6.7MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
25 October 2016

Summary

A local user vulnerability has been identified in the Oracle Retail Xstore Payment component within Oracle Retail Applications 1.x. This vulnerability potentially allows unauthorized local users to manipulate the confidentiality and integrity of the application through unknown means, posing significant risks to sensitive data and operations.

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.