Remote Access Vulnerability in Oracle E-Business Suite
CVE-2016-5595

8.2HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
25 October 2016

What is CVE-2016-5595?

An unspecified vulnerability exists in the Oracle Customer Interaction History component of Oracle E-Business Suite versions 12.1.1 through 12.1.3, as well as versions 12.2.3 and 12.2.4. This flaw allows remote attackers to potentially compromise the confidentiality and integrity of sensitive information via unknown attack vectors. Mitigating this vulnerability is critical to enhance the security posture of impacted systems and protect sensitive business data.

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2016-5595 : Remote Access Vulnerability in Oracle E-Business Suite