Unspecified vulnerability in the NetBeans component in Oracle Fusion Middleware 8.1 allows local users to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information is from the October 2016 CPU. Oracle has not commented on third-party claims that this issue is a directory traversal vulnerability which allows local users with certain permissions to write to arbitrary files and consequently gain privileges via a .. (dot dot) in a archive entry in a ZIP file imported as a project.
History

Fri, 11 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: oracle

Published:

Updated: 2024-10-10T18:28:50.196Z

Reserved: 2016-06-16T00:00:00

Link: CVE-2016-5537

cve-icon Vulnrichment

Updated: 2024-08-06T01:07:57.892Z

cve-icon NVD

Status : Deferred

Published: 2016-10-25T14:30:13.053

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-5537

cve-icon Redhat

No data.