CVE-2016-5491 is an unspecified vulnerability within the Oracle Commerce Service Center component, affecting versions 10.0.3.5 and 10.2.0.5. This high-severity vulnerability (CVSS 8.2) allows remote attackers to compromise confidentiality and integrity through unknown vectors, requiring user interaction but with low attack complexity. Despite its severity, there is no known exploit code available, nor is it listed in CISA's KEV catalog. The vulnerability has garnered minimal community discussion or media coverage, suggesting a low profile in the threat landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0.3.5CPE matchmatch criteria | cpe:2.3:a:oracle:commerce_service_center:10.0.3.5:*:*:*:*:*:*:* | ||
10.2.0.5CPE matchmatch criteria | cpe:2.3:a:oracle:commerce_service_center:10.2.0.5:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.