First published: Thu Jul 21 2016(Updated: )
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 and 13.1.0.0 allows remote attackers to affect confidentiality via vectors related to UI Framework.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Enterprise Manager Base Platform | =12.1.0.5 | |
Oracle Enterprise Manager Base Platform | =13.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3540 has a medium severity level due to its potential impact on confidentiality.
To address CVE-2016-3540, upgrade to the latest version of Oracle Enterprise Manager Base Platform as recommended by Oracle.
CVE-2016-3540 affects the Enterprise Manager Base Platform component within Oracle Enterprise Manager Grid Control versions 12.1.0.5 and 13.1.0.0.
Yes, CVE-2016-3540 can be exploited remotely by attackers aiming to compromise the confidentiality of the affected systems.
If you are using an affected version of Oracle Enterprise Manager, you should promptly apply the recommended patches and upgrades from Oracle.