CVE-2017-3603: Low severity Oracle WebCenter Sites vulnerability
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). Supported versions that are affected are 11.1.1.8.0, 12.2.1.0.0, 12.2.1.1.0 and 12.2.1.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle WebCenter Sites accessible data. CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3603?
CVE-2017-3603 has a moderate severity rating due to its difficulty to exploit and the potential impact on the affected Oracle WebCenter Sites versions.
How do I fix CVE-2017-3603?
To fix CVE-2017-3603, it is recommended to apply the latest security patches provided by Oracle for the affected versions of WebCenter Sites.
What versions of Oracle WebCenter Sites are affected by CVE-2017-3603?
CVE-2017-3603 affects Oracle WebCenter Sites versions 11.1.1.8.0, 12.2.1.0.0, 12.2.1.1.0, and 12.2.1.2.0.
Who can exploit CVE-2017-3603?
CVE-2017-3603 can potentially be exploited by a low privileged attacker with network access via HTTP.
What is the impact of CVE-2017-3603 on my system?
The impact of CVE-2017-3603 may include unauthorized access or disruption to the functionalities offered by the affected Oracle WebCenter Sites versions.