PT-2016-6490 · Oracle · Oracle Flexcube Universal Banking+1

Published

2016-10-25

·

Updated

2017-07-29

·

CVE-2016-5502

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Oracle Financial Services Applications versions 11.3.0, 11.4.0, 12.0.1 through 12.0.3
Description The issue affects confidentiality and integrity, allowing remote authenticated users to exploit it via vectors related to INFRA in the Oracle FLEXCUBE Universal Banking component.
Recommendations For versions 11.3.0, 11.4.0, and 12.0.1 through 12.0.3, update to a version that includes the fix for this issue to prevent exploitation.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-5502

Affected Products

Oracle Flexcube Universal Banking
Oracle Financial Services Applications