CVE-2016-3526: High severity oracle agile product lifecycle management vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality via vectors related to SDK, a different vulnerability than CVE-2016-3529 and CVE-2016-3560.
Affected Software
4 affected components
Oracle Agile Product Lifecycle Management Framework=9.3.4
Oracle Agile Product Lifecycle Management Framework=9.3.5
Oracle Agile Product Lifecycle Management=9.3.4
Oracle Agile Product Lifecycle Management=9.3.5
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3526?
CVE-2016-3526 is classified as a medium severity vulnerability affecting confidentiality.
2
How do I fix CVE-2016-3526?
To fix CVE-2016-3526, it is recommended to apply the latest security updates provided by Oracle for the affected software versions.
3
Which versions are affected by CVE-2016-3526?
CVE-2016-3526 specifically affects Oracle Agile PLM versions 9.3.4 and 9.3.5.
4
What type of vulnerability is CVE-2016-3526?
CVE-2016-3526 is an unspecified vulnerability that allows remote attackers to affect confidentiality.
5
Can CVE-2016-3526 be exploited remotely?
Yes, CVE-2016-3526 can be exploited remotely by attackers targeting Oracle Agile PLM components.