Vulnerability Name: | CVE-2016-3429 (CCN-112446) | ||||||||||||
Assigned: | 2016-04-19 | ||||||||||||
Published: | 2016-04-19 | ||||||||||||
Updated: | 2016-12-03 | ||||||||||||
Summary: | Unspecified vulnerability in the Oracle Retail Xstore Point of Service component in Oracle Retail Applications 5.0, 5.5, 6.0, 6.5, 7.0, and 7.1 allows remote authenticated users to affect confidentiality and integrity via vectors related to Xstore Services. | ||||||||||||
CVSS v3 Severity: | 4.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N)
| ||||||||||||
CVSS v2 Severity: | 5.4 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:P/A:N) 4.0 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:P/A:N/E:U/RL:OF/RC:C)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||||||
Vulnerability Type: | CWE-noinfo | ||||||||||||
Vulnerability Consequences: | Other | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-3429 Source: CCN Type: Oracle Critical Patch Update Advisory - April 2016 Oracle Critical Patch Update Advisory - April 2016 Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html Source: SECTRACK Type: UNKNOWN 1035600 Source: XF Type: UNKNOWN oracle-cpuapr2016-cve20163429(112446) | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |