- Description
- Unspecified vulnerability in the Oracle Clinical Remote Data Capture Option component in Oracle Industry Applications 4.6.0 and 4.6.6 allows remote authenticated users to affect confidentiality and integrity via vectors related to HTML Surround.
- Source
- secalert_us@oracle.com
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 5.5
- Impact score
- 4.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:N
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:oracle:industry_applications:4.6.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8DA06892-9985-41DC-A9A2-D7CC8D9016FA"
},
{
"criteria": "cpe:2.3:a:oracle:industry_applications:4.6.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9F599141-9C17-432F-9594-58AFF3FF16D2"
}
],
"operator": "OR"
}
]
}
]