CVE-2016-5604 — Improper Access Control in Oracle Enterprise Manager Base Platform
Severity
6.3MEDIUMNVD
EPSS
0.2%
top 63.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 25
Latest updateMay 17
Description
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 allows local users to affect confidentiality and integrity via vectors related to Security Framework, a different vulnerability than CVE-2016-3563.
CVSS vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:R/S:C/C:L/I:H/A:NExploitability: 1.1 | Impact: 4.7
Affected Packages1 packages
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-pqfw-72rp-g63g: Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12↗2022-05-17
CVEList▶
CVE-2016-5604: Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12↗2016-10-25