CVE-2016-5604Improper Access Control in Oracle Enterprise Manager Base Platform

Severity
6.3MEDIUMNVD
EPSS
0.2%
top 63.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateMay 17

Description

Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 allows local users to affect confidentiality and integrity via vectors related to Security Framework, a different vulnerability than CVE-2016-3563.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:R/S:C/C:L/I:H/A:NExploitability: 1.1 | Impact: 4.7

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pqfw-72rp-g63g: Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 122022-05-17
CVEList
CVE-2016-5604: Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 122016-10-25
CVE-2016-5604 — Improper Access Control in Oracle | cvebase