CVE-2016-3448Oracle Application Express vulnerability

4 documents4 sources
Severity
6.1MEDIUMNVD
EPSS
0.3%
top 43.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 21
Latest updateMay 17

Description

Unspecified vulnerability in the Application Express component in Oracle Database Server before 5.0.4 allows remote attackers to affect confidentiality and integrity via unknown vectors.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-qqc9-8r2g-h8vw: Unspecified vulnerability in the Application Express component in Oracle Database Server before 52022-05-17
CVEList
CVE-2016-3448: Unspecified vulnerability in the Application Express component in Oracle Database Server before 52016-07-21

💬Community

1
Bugzilla
CVE-2013-4312 kernel: File descriptors passed over unix sockets are not properly accounted2016-01-12
CVE-2016-3448 — Oracle vulnerability | cvebase