Lucene search

K
cve[email protected]CVE-2015-2604
HistoryJul 16, 2015 - 10:59 a.m.

CVE-2015-2604

2015-07-1610:59:29
web.nvd.nist.gov
21
cve-2015-2604
oracle
endeca
info discovery studio
fusion middleware
vulnerability
remote attackers
confidentiality integrity
availability

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

5.7 Medium

AI Score

Confidence

Low

0.946 High

EPSS

Percentile

99.3%

Unspecified vulnerability in the Oracle Endeca Information Discovery Studio component in Oracle Fusion Middleware 2.2.2, 2.3, 2.4, 3.0, and 3.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Integrator, a different vulnerability than CVE-2015-2602, CVE-2015-2603, CVE-2015-2605, CVE-2015-2606, and CVE-2015-4745.

Affected configurations

NVD
Node
oraclefusion_middlewareMatch2.2.2
OR
oraclefusion_middlewareMatch2.3
OR
oraclefusion_middlewareMatch2.4
OR
oraclefusion_middlewareMatch3.0
OR
oraclefusion_middlewareMatch3.1

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

5.7 Medium

AI Score

Confidence

Low

0.946 High

EPSS

Percentile

99.3%