First published: Wed Oct 21 2015(Updated: )
Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 10.1.3.5, 11.1.1.7, 11.1.1.9, 12.1.2.0, and 12.1.3.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Web Listener.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Fusion Middleware | =10.1.3.5 | |
Oracle Fusion Middleware | =11.1.1.7 | |
Oracle Fusion Middleware | =11.1.1.9 | |
Oracle Fusion Middleware | =12.1.2.0 | |
Oracle Fusion Middleware | =12.1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4914 has been assigned a moderate severity rating due to its potential impact on confidentiality for authenticated users.
To remediate CVE-2015-4914, it is recommended to apply the latest patches provided by Oracle for affected versions of Fusion Middleware.
Remote authenticated users of Oracle Fusion Middleware versions 10.1.3.5, 11.1.1.7, 11.1.1.9, 12.1.2.0, and 12.1.3.0 may be affected by CVE-2015-4914.
CVE-2015-4914 could potentially allow attackers to access sensitive information and compromise the confidentiality of the system.
CVE-2015-4914 was disclosed in October 2015 as part of Oracle's Critical Patch Update.