Unauthenticated Access Vulnerability in Oracle Siebel UI Framework
CVE-2020-2559

5.3MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 January 2020

Summary

A vulnerability exists within the Oracle Siebel UI Framework that allows an unauthenticated attacker with network access via HTTP to exploit the system. This may lead to unauthorized read access to certain data within the UI Framework, potentially compromising sensitive information. Affected versions are 19.7 and earlier, making it imperative for users to implement necessary security measures to safeguard their systems.

Affected Version(s)

Siebel UI Framework 19.7 and prior

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.