PT-2013-3228 · Oracle · Oracle Flexcube Direct Banking
Published
2013-04-17
·
Updated
2013-10-11
·
CVE-2013-1549
CVSS v2.0
3.5
Low
| Vector | AV:N/AC:M/Au:S/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle FLEXCUBE Direct Banking versions 2.8.0 through 5.3.3
Oracle FLEXCUBE Direct Banking version 6.0.1
Oracle FLEXCUBE Direct Banking version 12.0.0
Description
The issue affects the integrity of the system, allowing remote authenticated users to exploit it via vectors related to BASE.
Recommendations
For Oracle FLEXCUBE Direct Banking versions 2.8.0 through 5.3.3, update to a version outside of this range to resolve the issue.
For Oracle FLEXCUBE Direct Banking version 6.0.1, update to a newer version to mitigate the risk.
For Oracle FLEXCUBE Direct Banking version 12.0.0, update to a version later than 12.0.0 to address the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Oracle Flexcube Direct Banking