PT-2017-15927 · Oracle · Oracle Flexcube Enterprise Limits/Collateral Management

Published

2017-04-24

·

Updated

2019-10-03

·

CVE-2017-3490

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle FLEXCUBE Enterprise Limits and Collateral Management versions 12.0.0 through 12.1.0
Description The issue allows a low-privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Enterprise Limits and Collateral Management, resulting in unauthorized read access to a subset of accessible data.
Recommendations For versions 12.0.0 and 12.1.0, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-3490

Affected Products

Oracle Flexcube Enterprise Limits/Collateral Management