5.5
CVSSv2

CVE-2015-1926

Published: 16/07/2015 Updated: 22/09/2017
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Oracle WebCenter Portal component in Oracle Fusion Middleware 11.1.1.8.0 and 11.1.1.9.0, and the Oracle Applications Framework component in Oracle E-Business Suite 12.2.3 and 12.2.4, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Portal.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle e-business suite 12.2.3

oracle e-business suite 12.2.4

oracle fusion middleware 11.1.1.8.0

oracle fusion middleware 11.1.1.9.0

Vendor Advisories

The Java Portlet Specification JSR286 API jar file code could allow a remote attacker to obtain sensitive information, caused by the failure to restrict access to resources located within the web application An attacker could exploit this vulnerability to obtain configuration data and other sensitive information ...