CVE-2015-2623Oracle Fusion Middleware vulnerability

5 documents5 sources
Severity
4.3MEDIUMNVD
EPSS
0.2%
top 53.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 16
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 3.0.1 and 3.1.2, and the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.1.0, 12.1.2.0, and 12.1.3.0, allows remote attackers to affect integrity via unknown vectors related to Java Server Faces.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDoracle/fusion_middleware6 versions+5

Patches

🔴Vulnerability Details

2
GHSA
GHSA-4p26-xwh2-224v: Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 32022-05-17
CVEList
CVE-2015-2623: Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 32015-07-16

💥Exploits & PoCs

1
Exploit-DB
HP Data Protector 8.x - Remote Command Execution2015-01-30

💬Community

1
Bugzilla
CVE-2015-8370 grub2: buffer overflow when checking password entered during bootup2015-12-01
CVE-2015-2623 — Oracle Fusion Middleware vulnerability | cvebase