5.7
CVSSv3

CVE-2020-14617

CVSSv4: NA | CVSSv3: 5.7 | CVSSv2: 3.5 | VMScore: 670 | EPSS: 0.00064 | KEV: Not Included
Published: 15/07/2020 Updated: 21/11/2024

Vulnerability Summary

Vulnerability in the Primavera Unifier product of Oracle Construction and Engineering (component: Platform, Mobile App). Supported versions that are affected are 16.1, 16.2, 17.7-17.12, 18.8 and 19.12; Mobile App: before 20.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Primavera Unifier. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Primavera Unifier accessible data. CVSS 3.1 Base Score 5.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle primavera unifier

oracle primavera unifier 16.1

oracle primavera unifier 16.2

oracle primavera unifier 18.8

oracle primavera unifier 19.12