Lucene search

K
cveOracleCVE-2014-0434
HistoryJan 15, 2014 - 4:08 p.m.

CVE-2014-0434

2014-01-1516:08:10
oracle
web.nvd.nist.gov
21
cve-2014-0434
vulnerability
oracle
agile product lifecycle management
supply chain products suite
remote attackers
integrity
installation
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

Low

EPSS

0.005

Percentile

75.7%

Unspecified vulnerability in the Oracle Agile Product Lifecycle Management for Process component in Oracle Supply Chain Products Suite 6.0, 6.1, and 6.1.1 allows remote attackers to affect integrity via unknown vectors related to Installation.

Affected configurations

Nvd
Node
oraclesupply_chain_products_suiteMatch6.0.0
OR
oraclesupply_chain_products_suiteMatch6.1.0
OR
oraclesupply_chain_products_suiteMatch6.1.1.0
VendorProductVersionCPE
oraclesupply_chain_products_suite6.0.0cpe:2.3:a:oracle:supply_chain_products_suite:6.0.0:*:*:*:*:*:*:*
oraclesupply_chain_products_suite6.1.0cpe:2.3:a:oracle:supply_chain_products_suite:6.1.0:*:*:*:*:*:*:*
oraclesupply_chain_products_suite6.1.1.0cpe:2.3:a:oracle:supply_chain_products_suite:6.1.1.0:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

Low

EPSS

0.005

Percentile

75.7%