Security Flaw in Oracle Agile PLM Affecting Oracle Supply Chain Products
CVE-2017-10299
4.3MEDIUM
Summary
A security vulnerability exists in the Oracle Agile Product Lifecycle Management (PLM), specifically within the security component of the Oracle Supply Chain Products Suite. This flaw enables low-privileged attackers with network access through HTTP to exploit the system. Successful exploitation could lead to unauthorized read access to certain datasets within Oracle Agile PLM, potentially compromising sensitive information.
Affected Version(s)
Agile PLM Framework 9.3.5
Agile PLM Framework 9.3.6
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved