Vulnerability Name: | CVE-2016-5574 (CCN-117982) | ||||||||||||
Assigned: | 2016-10-18 | ||||||||||||
Published: | 2016-10-18 | ||||||||||||
Updated: | 2018-10-09 | ||||||||||||
Summary: | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588. | ||||||||||||
CVSS v3 Severity: | 8.6 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L) 7.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L/E:U/RL:O/RC:C)
7.5 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-284 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-5574 Source: CCN Type: IBM Security Bulletin 1994838 (WebSphere Portal) Vulnerabilities in Oracle Outside In Technology affect IBM WebSphere Portal (October 2016 CPU) Source: CCN Type: IBM Security Bulletin 1995391 (Rational DOORS Next Generation) Multiple Vulnerabilities in Oracle Outside In Technology affect IBM Rational DOORS Next Generation (CVE-2016-5558, CVE-2016-5574, etc) Source: CCN Type: Oracle CPUOct2016 Oracle Critical Patch Update Advisory - October 2016 Source: CONFIRM Type: Patch, Vendor Advisory http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html Source: BUGTRAQ Type: UNKNOWN 20161110 Secunia Research: Oracle Outside In "GetTxObj()" Use-After-Free Vulnerability Source: BID Type: UNKNOWN 93754 Source: CCN Type: BID-93754 Oracle Fusion Middleware CVE-2016-5574 Remote Security Vulnerability Source: SECTRACK Type: UNKNOWN 1037051 Source: XF Type: UNKNOWN oracle-cpuoct2016-cve20165574(117982) Source: MISC Type: UNKNOWN https://secuniaresearch.flexerasoftware.com/secunia_research/2016-12/ Source: CCN Type: IBM Security Bulletin 1995982 (Content Collector) Open Source Oracle Outside In Technology Vulnerabilities in IBM Content Collector for Email | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
BACK |