Denial of Service Vulnerability in Oracle FLEXCUBE Enterprise Limits and Collateral Management
CVE-2018-3041
6.5MEDIUM
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 18 July 2018
Summary
A vulnerability exists in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component that can be exploited by low-privileged attackers with network access. This flaw potentially allows an attacker to cause a denial of service, leading to application crashes or hangs. The affected versions, including 12.3.0, 14.0.0, and 14.1.0, may be targeted through HTTP, resulting in disrupted services and potentially significant operational impacts.
Affected Version(s)
FLEXCUBE Enterprise Limits and Collateral Management 12.3.0
FLEXCUBE Enterprise Limits and Collateral Management 14.0.0
FLEXCUBE Enterprise Limits and Collateral Management 14.1.0
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved