Denial of service in Oracle Outside In Technology - CVE-2016-3576

 

Denial of service in Oracle Outside In Technology - CVE-2016-3576

Published: November 30, -0001 / Updated: November 22, 2018


Vulnerability identifier: #VU2626
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2016-3576
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor: Oracle
Affected software:
Oracle Outside In Technology

Detailed vulnerability description

The vulnerability allows a remote attacker to cause DoS conditions on the target system.

The weakness exists due to a flaw in the Outside In Technology Outside In Filters component. A remote attacker can access data, partially modify data, and partially deny service on the system.

Successful exploitation of the vulnerability may result in denial of service on the vulnerable system.

How to mitigate CVE-2016-3576

Install update from vendor's website.

Sources