Vulnerability in Oracle SSL API of Oracle Fusion Middleware
CVE-2018-2765
7.5HIGH
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 19 April 2018
Summary
An unauthorized network-accessible vulnerability resides in the Oracle SSL API of Oracle Fusion Middleware, affecting specific versions. An unauthenticated attacker exploiting this flaw can potentially gain unauthorized access to sensitive data. This risk underscores the importance of updating and securing Oracle Fusion Middleware environments to prevent potential breaches.
Affected Version(s)
Database - Enterprise Edition 11.2.0.4
Database - Enterprise Edition 12.1.0.2
Database - Enterprise Edition 12.2.0.1
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved