PT-2015-2562 · Oracle · Oracle Agile Plm

Publicado

2015-10-21

·

Atualizado

2016-12-24

·

CVE-2015-4797

CVSS v2.0

3.5

Baixa

VetorAV:N/AC:M/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Oracle Agile PLM version 9.3.3
Description The issue is related to errors in the code of the Oracle Agile PLM component in Oracle Supply Chain Products Suite. It may allow a remote attacker to modify data, potentially affecting the integrity of the system. The vulnerability can be exploited by remote authenticated users via unknown vectors related to Security.
Recommendations For Oracle Agile PLM version 9.3.3, consider restricting access to sensitive data and functionality until a patch or fix is available. As a temporary workaround, limit the privileges of remote authenticated users to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-11927
CVE-2015-4797

Produtos afetados

Oracle Agile Plm