CVE-2016-3538
published 2016-07-21CVE-2016-3538: Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect…
PriorityP337high7.1CVSS 3.0
AVNACLPRLUINSUCNIHAL
EPSS
2.65%
83.9th percentile
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect integrity and availability via vectors related to File Folders / Attachment, a different vulnerability than CVE-2016-3539.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | agile_product_lifecycle_management | — | — |
| oracle | agile_product_lifecycle_management | — | — |
CVSS provenance
nvdv3.07.1HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L
nvdv2.07.5HIGHAV:N/AC:L/Au:S/C:N/I:C/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vjqp-mmmw-w55x: Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9
ghsa_unreviewed·2022-05-17·CVSS 7.1
CVE-2016-3538 [HIGH] GHSA-vjqp-mmmw-w55x: Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect integrity and availability via vectors related to File Folders / Attachment, a different vulnerability than CVE-2016-3539.
GHSA
GHSA-c885-29xq-2wqj: Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9
ghsa_unreviewed·2022-05-17·CVSS 7.1
CVE-2016-3539 [HIGH] GHSA-c885-29xq-2wqj: Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect integrity and availability via vectors related to File Folders / Attachment, a different vulnerability than CVE-2016-3538.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91966http://www.securitytracker.com/id/1036402http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91966http://www.securitytracker.com/id/1036402
2016-07-21
Published