Unspecified Vulnerability in Oracle E-Business Suite Affecting Remote Administrators
CVE-2016-5571

6.5MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
25 October 2016

Summary

An unspecified vulnerability in the Oracle Applications DBA component of Oracle E-Business Suite, specifically from versions 12.1.3 up to 12.2.6, allows remote administrators to compromise both confidentiality and integrity of the system. This flaw exploits interfaces related to AD Utilities, distinguishing it from other vulnerabilities within the same suite. As such, this exposure necessitates immediate attention to secure sensitive information and maintain overall system integrity. Users are advised to review Oracle's security advisories for mitigations and updates.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.