Unauthorized Network Access Vulnerability in Oracle Fusion Middleware Services
CVE-2019-2576
5.3MEDIUM
Summary
An unauthenticated attacker with network access can exploit a vulnerability in the Oracle Service Bus component of Oracle Fusion Middleware. This may allow the attacker to perform unauthorized actions leading to a partial denial of service. Supported versions affected include 11.1.1.9.0, 12.1.3.0.0, and 12.2.1.3.0. For further information, refer to the official security advisory.
Affected Version(s)
Service Bus 11.1.1.9.0
Service Bus 12.1.3.0.0
Service Bus 12.2.1.3.0
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved