First published: Mon Apr 24 2017(Updated: )
Vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component of Oracle Financial Services Applications (subcomponent: Limits and Collateral). Supported versions that are affected are 12.0.0 and 12.1.0. Easily "exploitable" vulnerability allows high privileged attacker with logon to the infrastructure where Oracle FLEXCUBE Enterprise Limits and Collateral Management executes to compromise Oracle FLEXCUBE Enterprise Limits and Collateral Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle FLEXCUBE Enterprise Limits and Collateral Management accessible data. CVSS 3.0 Base Score 4.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle FLEXCUBE Enterprise Limits and Collateral Management | =12.0.0 | |
Oracle FLEXCUBE Enterprise Limits and Collateral Management | =12.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-3483 is considered easily exploitable and poses a high risk to affected systems.
CVE-2017-3483 affects Oracle FLEXCUBE Enterprise Limits and Collateral Management versions 12.0.0 and 12.1.0.
To mitigate CVE-2017-3483, it is recommended to apply the latest security patches provided by Oracle.
CVE-2017-3483 affects the Limits and Collateral Management component of Oracle FLEXCUBE.
Yes, Oracle has released patches to address the vulnerabilities associated with CVE-2017-3483.