CVE-2017-3286Oracle Applications DBA vulnerability

3 documents3 sources
Severity
6.0MEDIUMNVD
EPSS
0.1%
top 72.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 27
Latest updateMay 13

Description

Vulnerability in the Oracle Applications DBA component of Oracle E-Business Suite (subcomponent: Patching). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Applications DBA executes to compromise Oracle Applications DBA. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or al

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:NExploitability: 0.8 | Impact: 5.2

Affected Packages2 packages

CVEListV5oracle/applications_dba5 versions+4
NVDoracle/applications_dba5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8fr7-cvvw-wgwv: Vulnerability in the Oracle Applications DBA component of Oracle E-Business Suite (subcomponent: Patching)2022-05-13
CVEList
CVE-2017-3286: Vulnerability in the Oracle Applications DBA component of Oracle E-Business Suite (subcomponent: Patching)2017-01-27
CVE-2017-3286 — Oracle Applications DBA vulnerability | cvebase