Lucene search

K
nvd[email protected]NVD:CVE-2018-3076
HistoryJul 18, 2018 - 1:29 p.m.

CVE-2018-3076

2018-07-1813:29:08
web.nvd.nist.gov
3

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

CVSS3

2.7

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

AI Score

1.7

Confidence

High

EPSS

0.001

Percentile

25.7%

Vulnerability in the PeopleSoft Enterprise CS Financial Aid component of Oracle PeopleSoft Products (subcomponent: ISIR Processing). Supported versions that are affected are 9.0 and 9.2. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise CS Financial Aid. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise CS Financial Aid accessible data. CVSS 3.0 Base Score 2.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).

Affected configurations

Nvd
Node
oraclepeoplesoft_enterprise_cs_financial_aidMatch9.0
OR
oraclepeoplesoft_enterprise_cs_financial_aidMatch9.2
VendorProductVersionCPE
oraclepeoplesoft_enterprise_cs_financial_aid9.0cpe:2.3:a:oracle:peoplesoft_enterprise_cs_financial_aid:9.0:*:*:*:*:*:*:*
oraclepeoplesoft_enterprise_cs_financial_aid9.2cpe:2.3:a:oracle:peoplesoft_enterprise_cs_financial_aid:9.2:*:*:*:*:*:*:*

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

CVSS3

2.7

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

AI Score

1.7

Confidence

High

EPSS

0.001

Percentile

25.7%

Related for NVD:CVE-2018-3076