CVE-2016-5504: Infoleak
Published Oct 25, 2016
·Updated
Unspecified vulnerability in the Oracle Agile Product Lifecycle Management for Process component in Oracle Supply Chain Products Suite 6.1.0.4, 6.1.1.6, and 6.2.0.0 allows local users to affect confidentiality via vectors related to Supplier Portal.
Affected Software
3 affected components
Oracle Agile Product Lifecycle Management for Process=6.1.0.4
Oracle Agile Product Lifecycle Management for Process=6.1.1.6
Oracle Agile Product Lifecycle Management for Process=6.2.0.0
Remediation
Event History
Oct 25, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5504?
CVE-2016-5504 has been classified with a high severity due to its potential impact on confidentiality.
2
How do I fix CVE-2016-5504?
To fix CVE-2016-5504, you should apply the latest security patches provided by Oracle for affected versions.
3
Which versions of Oracle Agile Product Lifecycle Management for Process are affected by CVE-2016-5504?
CVE-2016-5504 affects versions 6.1.0.4, 6.1.1.6, and 6.2.0.0 of Oracle Agile Product Lifecycle Management for Process.
4
What are the potential impacts of CVE-2016-5504?
CVE-2016-5504 can affect confidentiality, allowing local users to access sensitive information.
5
Is CVE-2016-5504 a local or remote vulnerability?
CVE-2016-5504 is a local vulnerability that requires local access to exploit.