Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2016-5451


Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote authenticated users to affect confidentiality and integrity via vectors related to EAI, a different vulnerability than CVE-2016-5468.


Published

2016-07-21T10:15:07.067

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 8.1 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:P/I:P/A:N

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: NONE
Exploitability Score

8.0

Impact Score

4.9

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oracle siebel_ui_framework 8.1.1 Yes
Application oracle siebel_ui_framework 8.2.2 Yes
Application oracle siebel_ui_framework 2014 Yes
Application oracle siebel_ui_framework 2015 Yes
Application oracle siebel_ui_framework 2016 Yes

References