- Description
- Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1.1.5, 11.1.1.7, 11.1.2.1, and 11.1.2.2 allows remote attackers to affect integrity via vectors related to SSO Engine.
- Source
- secalert_us@oracle.com
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:P/A:N
- Hype score
- Not currently trending
- Comment
- Per: http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html Please refer to My Oracle Support Note 1952939.1 for instructions on how to address this issue.
- Impact
- -
- Solution
- -
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:11.1.1.5.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8EA2051D-4D42-49DE-BECA-E28C5EA0C030"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:11.1.1.7.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E8934DB1-B2A1-4C3B-B000-78826FC45C7C"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:11.1.2.1.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D5D8E14F-4F2F-40ED-8ACE-D92FC2CE937B"
},
{
"criteria": "cpe:2.3:a:oracle:fusion_middleware:11.1.2.2.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "936C1F14-2B50-41F8-AB48-6FCCC189B2D2"
}
],
"operator": "OR"
}
]
}
]