CVE-2014-6557
Unspecified vulnerability in the Application Performance Management component in Oracle Enterprise Manager Grid Control before 12.1.0.6.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to End User…
Does this matter?
Lower severity and a low EPSS score (0.97%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Application Performance Management component in Oracle Enterprise Manager Grid Control before 12.1.0.6.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to End User Experience Management.
- CVSS 2.0
- 4.9 MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:N
- EPSS
- 0.97% probability · 60th percentile
- CISA KEV
- Not listed
- Affected
- oracle/enterprise manager grid control
- Source
- secalert_us@oracle.com
References
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/70512
- http://www.securitytracker.com/id/1031041
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/70512
- http://www.securitytracker.com/id/1031041
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.