PT-2015-2562 · Oracle · Oracle Agile Plm
Publicado
2015-10-21
·
Atualizado
2016-12-24
·
CVE-2015-4797
CVSS v2.0
3.5
Baixa
| Vetor | AV:N/AC:M/Au:S/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle Agile PLM version 9.3.3
Description
The issue is related to errors in the code of the Oracle Agile PLM component in Oracle Supply Chain Products Suite. It may allow a remote attacker to modify data, potentially affecting the integrity of the system. The vulnerability can be exploited by remote authenticated users via unknown vectors related to Security.
Recommendations
For Oracle Agile PLM version 9.3.3, consider restricting access to sensitive data and functionality until a patch or fix is available. As a temporary workaround, limit the privileges of remote authenticated users to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Oracle Agile Plm