CVE-2019-2572
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Vulnerability in the Oracle SOA Suite component of Oracle Fusion Middleware (subcomponent: Fabric Layer). The supported version that is affected is 11.1.1.9.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle SOA Suite. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle SOA Suite accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Vulnerabilidad en el componente Oracle SOA Suite de Oracle Fusion Middleware (subcomponente: Fabric Layer). La versión compatible que se ve impactada es 11.1.1.9.0. Una vulnerabilidad fácilmente explotable permite que un atacante no autenticado con acceso a la red por medio de HTTP comprometa la suite SOA de Oracle. Los ataques con éxito de esta vulnerabilidad pueden conllevar a el acceso de lectura no autorizado a un subconjunto de datos accesibles de Oracle SOA Suite. CVSS versión 3.0 Base Score versión 5.3 (Impactos de confidencialidad). Vector CVSS: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2018-12-14 CVE Reserved
- 2019-04-23 CVE Published
- 2023-03-08 EPSS Updated
- 2024-10-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html | 2020-08-24 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oracle Search vendor "Oracle" | Soa Suite Search vendor "Oracle" for product "Soa Suite" | 11.1.1.9.0 Search vendor "Oracle" for product "Soa Suite" and version "11.1.1.9.0" | - |
Affected
|