Vulnerability in the Oracle Fusion Middleware MapViewer component of Oracle Fusion Middleware (subcomponent: Map Builder). Supported versions that are affected are 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Fusion Middleware MapViewer. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Fusion Middleware MapViewer accessible data. CVSS 3.0 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).
References
Link | Resource |
---|---|
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html | Patch Vendor Advisory |
http://www.securitytracker.com/id/1041310 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/104771 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-08-02 05:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-3109
Mitre link : CVE-2018-3109
JSON object : View
CWE
Products Affected
oracle
- fusion_middleware