Lucene search

K
cveOracleCVE-2016-0401
HistoryJan 21, 2016 - 2:59 a.m.

CVE-2016-0401

2016-01-2102:59:13
oracle
web.nvd.nist.gov
24
oracle
bi publisher
remote attackers
scheduler
cve-2016-0401
cve-2016-0429
integrity
fusion middleware.

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

50.6%

Unspecified vulnerability in the Oracle BI Publisher component in Oracle Fusion Middleware 11.1.1.7.0 and 11.1.1.9.0 allows remote attackers to affect integrity via unknown vectors related to Scheduler, a different vulnerability than CVE-2016-0429.

Affected configurations

Nvd
Node
oraclefusion_middlewareMatch11.1.1.7.0
OR
oraclefusion_middlewareMatch11.1.1.9
VendorProductVersionCPE
oraclefusion_middleware11.1.1.7.0cpe:2.3:a:oracle:fusion_middleware:11.1.1.7.0:*:*:*:*:*:*:*
oraclefusion_middleware11.1.1.9cpe:2.3:a:oracle:fusion_middleware:11.1.1.9:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

50.6%

Related for CVE-2016-0401