7.8
CVSSv2

CVE-2016-3532

Published: 21/07/2016 Updated: 01/09/2017
CVSS v2 Base Score: 7.8 | Impact Score: 7.8 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.2 | Impact Score: 4.7 | Exploitability Score: 2.8
VMScore: 694
Vector: AV:N/AC:M/Au:N/C:C/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Oracle Advanced Inbound Telephony component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote malicious users to affect confidentiality and integrity via vectors related to SDK client integration. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue involves multiple cross-site scripting (XSS) vulnerabilities, which allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle advanced inbound telephony 12.1.1

oracle advanced inbound telephony 12.1.2

oracle advanced inbound telephony 12.1.3