VulnerabilityModified
CVE-2016-3514
Unspecified vulnerability in the Oracle Enterprise Communications Broker component in Oracle Communications Applications before PCz 2.0.0m4p1 allows remote authenticated users to affect confidentiality via vectors related to GUI, a different…
MEDIUM 6.5EPSS 2.74%
Does this matter?
Lower severity and a low EPSS score (2.74%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Oracle Enterprise Communications Broker component in Oracle Communications Applications before PCz 2.0.0m4p1 allows remote authenticated users to affect confidentiality via vectors related to GUI, a different vulnerability than CVE-2016-3516.
- CVSS 3.0
- 6.5 MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 2.74% probability · 85th percentile
- CISA KEV
- Not listed
- Affected
- oracle/enterprise communications broker
- Source
- secalert_us@oracle.com
References
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/91787Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036401
- http://www.synacktiv.com/ressources/oracle_sbc_configuration_issues.pdfThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/91787Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036401
- http://www.synacktiv.com/ressources/oracle_sbc_configuration_issues.pdfThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.