CVE-2016-3506
Published Jul 21, 2016
Last updated 6 years ago
Overview
- Description
- Unspecified vulnerability in the JDBC component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2; the Oracle Retail Xstore Point of Service 5.5, 6.0, 6.5, 7.0, 7.1, 15.0, and 16.0; the Oracle Retail Warehouse Management System 14.04, 14.1.3, and 15.0.1; the Oracle Retail Workforce Management 1.60.7, and 1.64.0; the Oracle Retail Clearance Optimization Engine 13.4; the Oracle Retail Markdown Optimization 13.4 and 14.0; and Oracle Retail Merchandising System 16.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
- Source
- secalert_us@oracle.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 8.1
- Impact score
- 5.9
- Exploitability score
- 2.2
- Vector string
- CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:oracle:jdbc:11.2.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5EBC7EA4-EB5A-430D-B3E5-1DBBBABB0D2C" }, { "criteria": "cpe:2.3:a:oracle:jdbc:12.1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19486004-AD37-46D3-BD81-D85CD7C56ACF" }, { "criteria": "cpe:2.3:a:oracle:jdbc:12.1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EAC2C382-2D0F-4168-8CC4-0AF52B313305" } ], "operator": "OR" } ] } ]