Unspecified vulnerability in the Oracle Commerce Guided Search component in Oracle Commerce 6.2.2, 6.3.0, 6.4.1.2, and 6.5.0 through 6.5.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html | patch vendor advisory |
http://www.securityfocus.com/bid/93664 | vdb entry |