Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-3324

EPSS 2.72% · P86
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2017-3324

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management component of Oracle Primavera Products Suite (subcomponent: Web Access). Supported versions that are affected are 8.2, 8.3, 8.4, 15.1, 15.2, 16.1 and 16.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Primavera P6 Enterprise Project Portfolio Management. While the vulnerability is in Primavera P6 Enterprise Project Portfolio Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Primavera P6 Enterprise Project Portfolio Management accessible data as well as unauthorized access to critical data or complete access to all Primavera P6 Enterprise Project Portfolio Management accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Primavera P6 Enterprise Project Portfolio Management. CVSS v3.0 Base Score 10.0 (Confidentiality, Integrity and Availability impacts).
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Oracle Primavera Products Suite 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Oracle Primavera Products Suite是美国甲骨文(Oracle)公司的一款项目组合管理解决方案套件产品。Primavera P6 Enterprise Project Portfolio Management(P6 EPPM)是其中的一个用于项目的规划、管理和执行的组件。 Oracle Primavera Products Suite中的P6 EPPM组件中的Web Access子组件存在安全漏洞。攻击者可利用该漏洞未授权访问、创建、删除或修改,造成拒绝服务,影响数据的保密性、完
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
OraclePrimavera P6 Enterprise Project Portfolio Management 8.2 -

II. Public POCs for CVE-2017-3324

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2017-3324

登录查看更多情报信息。

Same Patch Batch · Oracle · 2017-01-27 · 224 CVEs total

CVE-2017-3367Oracle E-Business Suite 安全漏洞
CVE-2017-3352Oracle E-Business Suite Oracle Marketing 安全漏洞
CVE-2017-3353Oracle E-Business Suite Oracle Marketing 安全漏洞
CVE-2017-3354Oracle E-Business Suite Oracle Marketing 安全漏洞
CVE-2017-3357Oracle E-Business Suite Oracle Marketing 安全漏洞
CVE-2017-3358Oracle E-Business Suite Oracle Marketing 安全漏洞
CVE-2017-3359Oracle Customer Intelligence 安全漏洞
CVE-2017-3360Oracle E-Business Suite 安全漏洞
CVE-2017-3361Oracle E-Business Suite 安全漏洞
CVE-2017-3362Oracle Knowledge Management 安全漏洞
CVE-2017-3363Oracle E-Business Suite 安全漏洞
CVE-2017-3364Oracle E-Business Suite 安全漏洞
CVE-2017-3365Oracle E-Business Suite Oracle Knowledge Management 安全漏洞
CVE-2017-3366Oracle E-Business Suite Oracle Knowledge Management 安全漏洞
CVE-2017-3379Oracle E-Business Suite 安全漏洞
CVE-2017-3376Oracle E-Business Suite 安全漏洞
CVE-2017-3377Oracle E-Business Suite 安全漏洞
CVE-2017-3378Oracle E-Business Suite 安全漏洞
CVE-2017-3375Oracle E-Business Suite 安全漏洞
CVE-2017-3380Oracle E-Business Suite 安全漏洞

Showing top 20 of 224 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2017-3324

No comments yet


Leave a comment