First published: Thu Jul 21 2016(Updated: )
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Web based help screens.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Object Library | =12.1.3 | |
Oracle Application Object Library | =12.2.3 | |
Oracle Application Object Library | =12.2.4 | |
Oracle Application Object Library | =12.2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3545 has a medium severity rating due to its potential impact on confidentiality.
To fix CVE-2016-3545, apply the latest security patches provided by Oracle for the affected versions of the Application Object Library.
Organizations using Oracle E-Business Suite versions 12.1.3, 12.2.3, 12.2.4, and 12.2.5 are affected by CVE-2016-3545.
CVE-2016-3545 can be exploited through web-based help screens, allowing remote attackers to access confidential information.
There are no known workarounds for CVE-2016-3545, and applying the appropriate patches is recommended.