CVE-2015-2615 describes an unspecified vulnerability within the Oracle Applications Framework component of Oracle E-Business Suite versions 12.0.6, 12.1.3, and 12.2.3, specifically impacting the Portal functionality. This vulnerability poses a confidentiality risk, allowing remote attackers to access sensitive information without authentication. With a CVSS score of 5.0, it is considered a medium severity issue, but there is no known public exploit code, Metasploit modules, or community discussion, and it is not listed on the CISA KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.0.6CPE matchmatch criteria | cpe:2.3:a:oracle:e-business_suite:12.0.6:*:*:*:*:*:*:* | ||
12.1.3CPE matchmatch criteria | cpe:2.3:a:oracle:e-business_suite:12.1.3:*:*:*:*:*:*:* | ||
12.2.3CPE matchmatch criteria | cpe:2.3:a:oracle:e-business_suite:12.2.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.