HIGH · 7.5

CVE-2009-1000

The Oracle Applications Framework component in Oracle E-Business Suite 12.0.6 and 11i10CU2 uses default passwords for unspecified "FND Applications Users (not DB users)," which has unknown impact and ...

Vulnerability Description

The Oracle Applications Framework component in Oracle E-Business Suite 12.0.6 and 11i10CU2 uses default passwords for unspecified "FND Applications Users (not DB users)," which has unknown impact and attack vectors.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
OracleE-Business Suite11i10cu2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2009-1000?

CVE-2009-1000 is a vulnerability with a CVSS score of 7.5 (HIGH). The Oracle Applications Framework component in Oracle E-Business Suite 12.0.6 and 11i10CU2 uses default passwords for unspecified "FND Applications Users (not DB users)," which has unknown impact and ...

How severe is CVE-2009-1000?

CVE-2009-1000 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2009-1000?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle E-Business Suite.