PT-2016-6490 · Oracle · Oracle Flexcube Universal Banking+1
Published
2016-10-25
·
Updated
2017-07-29
·
CVE-2016-5502
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle Financial Services Applications versions 11.3.0, 11.4.0, 12.0.1 through 12.0.3
Description
The issue affects confidentiality and integrity, allowing remote authenticated users to exploit it via vectors related to INFRA in the Oracle FLEXCUBE Universal Banking component.
Recommendations
For versions 11.3.0, 11.4.0, and 12.0.1 through 12.0.3, update to a version that includes the fix for this issue to prevent exploitation.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Oracle Flexcube Universal Banking
Oracle Financial Services Applications