PT-2017-15935 · Oracle · Oracle Fusion Middleware+1
Published
2017-04-24
·
Updated
2019-10-03
·
CVE-2017-3499
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle Fusion Middleware versions prior to 11.1.12.0.0
Description
The issue allows an unauthenticated attacker with network access via HTTPS to compromise Oracle Social Network, resulting in unauthorized access to critical data or complete access to all Oracle Social Network accessible data.
Recommendations
For versions prior to 11.1.12.0.0, update to version 11.1.12.0.0 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Oracle Fusion Middleware
Oracle Social Network