MEDIUM · 6.4

CVE-2016-3572

Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote authenticated users to a...

Vulnerability Description

Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote authenticated users to affect confidentiality and integrity via vectors related to Web Access.

CVSS Score

6.4

MEDIUM

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
NONE

Affected Products

VendorProductVersions
OraclePrimavera P6 Enterprise Project Portfolio Management8.3

References

FAQ

What is CVE-2016-3572?

CVE-2016-3572 is a vulnerability with a CVSS score of 6.4 (MEDIUM). Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote authenticated users to a...

How severe is CVE-2016-3572?

CVE-2016-3572 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-3572?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Primavera P6 Enterprise Project Portfolio Management.