CVE-2015-2610: Medium severity oracle e-business suite vulnerability
Published Jul 16, 2015
·Updated
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.0.6, 12.1.3, 12.2.3, and 12.2.4 allows remote attackers to affect integrity via unknown vectors related to Popup windows.
Affected Software
4 affected components
Oracle E-Business Suite=12.0.6
Oracle E-Business Suite=12.1.3
Oracle E-Business Suite=12.2.3
Oracle E-Business Suite=12.2.4
Remediation
Event History
Jul 16, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2610?
CVE-2015-2610 is classified as a high severity vulnerability affecting Oracle E-Business Suite.
2
How do I fix CVE-2015-2610?
To fix CVE-2015-2610, apply the latest security patches provided by Oracle for the affected versions.
3
Which versions of Oracle E-Business Suite are affected by CVE-2015-2610?
CVE-2015-2610 affects versions 12.0.6, 12.1.3, 12.2.3, and 12.2.4 of Oracle E-Business Suite.
4
What type of attack does CVE-2015-2610 allow?
CVE-2015-2610 allows remote attackers to potentially affect the integrity of the application via unspecified vectors related to Popup windows.
5
Is there a workaround for CVE-2015-2610?
There are no documented workarounds for CVE-2015-2610, and applying patches is recommended.