VulnerabilityModified
CVE-2014-2452
Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1.1.5 allows remote authenticated users to affect availability via unknown vectors related to Webserver Plugin.
MEDIUM 4.0EPSS 2.84%
Does this matter?
Lower severity and a low EPSS score (2.84%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1.1.5 allows remote authenticated users to affect availability via unknown vectors related to Webserver Plugin.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
- EPSS
- 2.84% probability · 86th percentile
- CISA KEV
- Not listed
- Affected
- oracle/fusion middleware
- Source
- secalert_us@oracle.com
References
- http://packetstormsecurity.com/files/127047/Oracle-Access-Manager-Information-Disclosure.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlVendor Advisory
- http://www.securityfocus.com/bid/66865
- http://packetstormsecurity.com/files/127047/Oracle-Access-Manager-Information-Disclosure.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlVendor Advisory
- http://www.securityfocus.com/bid/66865
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.