2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2013-1535" ,
"sourceIdentifier" : "secalert_us@oracle.com" ,
"published" : "2013-04-17T12:19:44.683" ,
2024-11-22 19:15:24 +00:00
"lastModified" : "2024-11-21T01:49:48.810" ,
2023-04-24 12:24:31 +02:00
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 through 4.1.0, 5.1.0, 5.2.0, 5.3.4, and 6.0.1 allows remote attackers to affect confidentiality via vectors related to BASE."
} ,
{
"lang" : "es" ,
"value" : "Vulnerabilidad no especificada en el componente Oracle FLEXCUBE Direct Banking en Oracle Financial Services Software v2.8.0 hasta v4.1.0, v5.1.0, v5.2.0, v5.3.4, y v6.0.1 permite a atacantes remotos afectar la confidencialidad a trav\u00e9s de vectores relacionados con BASE."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N" ,
2024-11-22 19:15:24 +00:00
"baseScore" : 5.0 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-11-22 19:15:24 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:2.8.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6C9A64F6-BFFE-41B0-AED9-680EBEA8DAAA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:3.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "67F5A35B-2B26-42DF-B089-B9966A624FCF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:4.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5B341E43-F91A-421C-8CF6-5CBBF1AB010F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:5.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "313B4C36-CD0B-4390-A444-BBF7C1C422DD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:5.2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "463011CD-89A0-43FC-B25A-FDC688451C90"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:5.3.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "54EC5AFF-90DF-457A-9C4E-1FC8044D5F3B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:oracle:financial_services_software:6.0.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BDC91055-89CE-40C7-8A8B-FB3FDE6AD0CC"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2013:150" ,
"source" : "secalert_us@oracle.com"
} ,
{
"url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html" ,
"source" : "secalert_us@oracle.com" ,
"tags" : [
"Vendor Advisory"
]
2024-11-22 19:15:24 +00:00
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2013:150" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}