CVE-2016-3448: Medium severity oracle application express vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in the Application Express component in Oracle Database Server before 5.0.4 allows remote attackers to affect confidentiality and integrity via unknown vectors.
Affected Software
1 affected component
Oracle Application Express<=5.0.3
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3448?
CVE-2016-3448 has a critical severity rating allowing remote attackers to potentially compromise confidentiality and integrity.
2
How do I fix CVE-2016-3448?
To fix CVE-2016-3448, upgrade to Oracle Application Express version 5.0.4 or later.
3
What versions are affected by CVE-2016-3448?
CVE-2016-3448 affects Oracle Application Express before version 5.0.4, specifically versions up to and including 5.0.3.
4
Can CVE-2016-3448 be exploited remotely?
Yes, CVE-2016-3448 allows remote attackers to exploit the vulnerability through unspecified vectors.
5
What components are impacted by CVE-2016-3448?
CVE-2016-3448 impacts the Application Express component in Oracle Database Server.