First published: Thu Jan 21 2016(Updated: )
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Enterprise Infrastructure SEC.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Multiple Products | =9.1 | |
Oracle Multiple Products | =9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0423 is classified as a high-severity vulnerability that can impact confidentiality, integrity, and availability.
To fix CVE-2016-0423, you should apply the recommended security patches provided by Oracle for JD Edwards Products 9.1 and 9.2.
CVE-2016-0423 can be exploited through various vectors related to the Enterprise Infrastructure SEC, enabling potential unauthorized access or denial of service.
CVE-2016-0423 affects Oracle JD Edwards Products version 9.1 and version 9.2.
There are no official workarounds documented for CVE-2016-0423, so applying the patch is strongly recommended as the best mitigation strategy.