CVE-2016-0422
 
Severity Score
7.1
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote attackers to affect availability via vectors related to Enterprise Infrastructure SEC, a different vulnerability than CVE-2016-0424.
Vulnerabilidad no especificada en el componente JD Edwards EnterpriseOne Tools en Oracle JD Edwards Products 9.1 y 9.2 permite a atacantes remotos afectar a la disponibilidad a través de vectores relacionados con Enterprise Infrastructure SEC, una vulnerabilidad diferente a CVE-2016-0424.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2015-12-09 CVE Reserved
- 2016-01-21 CVE Published
- 2023-11-12 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/138507/JD-Edwards-9.1-EnterpriseOne-Server-JDENet-Password-Disclosure.html | X_refsource_misc | |
http://seclists.org/fulldisclosure/2016/Aug/124 | Mailing List | |
http://www.securitytracker.com/id/1034722 | Vdb Entry | |
https://www.onapsis.com/research/security-advisories/jd-edwards-jdenet-password-disclosure | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html | 2018-02-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oracle Search vendor "Oracle" | Jd Edwards Products Search vendor "Oracle" for product "Jd Edwards Products" | 9.1 Search vendor "Oracle" for product "Jd Edwards Products" and version "9.1" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Jd Edwards Products Search vendor "Oracle" for product "Jd Edwards Products" | 9.2 Search vendor "Oracle" for product "Jd Edwards Products" and version "9.2" | - |
Affected
|