First published: Thu Apr 21 2016(Updated: )
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6, 12.1.2, 12.1.3, and 12.2.1 allows remote attackers to affect confidentiality and integrity via vectors related to Console.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle WebLogic Server | =10.3.6.0.0 | |
Oracle WebLogic Server | =12.1.2.0.0 | |
Oracle WebLogic Server | =12.1.3.0.0 | |
Oracle WebLogic Server | =12.2.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3416 is considered a high-severity vulnerability due to its potential impact on confidentiality and integrity.
To fix CVE-2016-3416, apply the latest patches provided by Oracle for the affected versions of WebLogic Server.
CVE-2016-3416 affects Oracle WebLogic Server versions 10.3.6, 12.1.2, 12.1.3, and 12.2.1.
CVE-2016-3416 can be exploited by remote attackers through vectors related to the Console interface of Oracle WebLogic Server.
There are no documented workarounds for CVE-2016-3416; the recommended action is to apply security patches.