CVE-2015-2653: Medium severity oracle commerce vulnerability
Published Jul 16, 2015
·Updated
Unspecified vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager component in Oracle Commerce Platform 3.1.1, 3.1.2, 11.0, and 11.1 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Content Acquisition System.
Affected Software
4 affected components
Oracle Commerce Platform=3.1.1
Oracle Commerce Platform=3.1.2
Oracle Commerce Platform=11.0
Oracle Commerce Platform=11.1
Remediation
Event History
Jul 16, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2653?
CVE-2015-2653 has been rated as a medium severity vulnerability.
2
How do I fix CVE-2015-2653?
To fix CVE-2015-2653, update your Oracle Commerce Platform to the latest version recommended by Oracle.
3
What versions of Oracle Commerce are affected by CVE-2015-2653?
CVE-2015-2653 affects Oracle Commerce Platform versions 3.1.1, 3.1.2, 11.0, and 11.1.
4
What types of attacks can CVE-2015-2653 enable?
CVE-2015-2653 may allow remote attackers to compromise the confidentiality and integrity of data.
5
Is a patch available for CVE-2015-2653?
Yes, Oracle has released patches for CVE-2015-2653 in their security updates.