| Vulnerability Name: | CVE-2010-3587 (CCN-64780) | ||||||||
| Assigned: | 2010-09-20 | ||||||||
| Published: | 2011-01-19 | ||||||||
| Updated: | 2017-08-17 | ||||||||
| Summary: | Unspecified vulnerability in the Oracle Common Applications component in Oracle Applications 11.5.10.2, 12.0.4, 12.0.5, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to User Management. | ||||||||
| CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
| CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N) 3.2 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-noinfo | ||||||||
| Vulnerability Consequences: | Gain Access | ||||||||
| References: | Source: MITRE Type: CNA CVE-2010-3587 Source: CCN Type: SA42922 Oracle E-Business Suite Two Vulnerabilities Source: SECUNIA Type: Vendor Advisory 42922 Source: CCN Type: Oracle Critical Patch Update Advisory - January 2011 Oracle Critical Patch Update Advisory - January 2011 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.html Source: CCN Type: OSVDB ID: 70533 Oracle Applications Common Applications User Management Unspecified Remote Issue Source: BID Type: UNKNOWN 45870 Source: CCN Type: BID-45870 Oracle E-Business Suite CVE-2010-3587 Common Applications Component Remote Vulnerability Source: VUPEN Type: Vendor Advisory ADV-2011-0144 Source: XF Type: UNKNOWN oracle-ebusiness-common-unauth-access(64780) Source: XF Type: UNKNOWN oracle-ebusiness-common-unauth-access(64780) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||