First published: Wed Oct 21 2015(Updated: )
Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 12.0.6, 12.1.3, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality via unknown vectors related to Integration with Peoplesoft.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Supply Chain Products Suite | =12.0.6 | |
Oracle Supply Chain Products Suite | =12.1.3 | |
Oracle Supply Chain Products Suite | =12.2.3 | |
Oracle Supply Chain Products Suite | =12.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4848 is rated as a medium-severity vulnerability that affects confidentiality.
To fix CVE-2015-4848, upgrade to the latest version of Oracle Supply Chain Products Suite that addresses the vulnerability.
CVE-2015-4848 affects Oracle Supply Chain Products Suite versions 12.0.6, 12.1.3, 12.2.3, and 12.2.4.
CVE-2015-4848 can be exploited by remote attackers to affect the confidentiality of the system.
Yes, Oracle has released a patch for CVE-2015-4848 that users should apply to their affected systems.