Vulnerabilities (CVE)

Filtered by vendor Oracle Subscribe
Filtered by product Webcenter Interaction
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-16952 1 Oracle 1 Webcenter Interaction 2018-12-07 6.8 MEDIUM 8.8 HIGH
The Oracle WebCenter Interaction Portal 10.3.3 does not implement protection against Cross-site Request Forgery in its design. The impact is sensitive actions in the portal (such as changing a portal user's password). NOTE: this CVE is assigned by MITRE and isn't validated by Oracle because Oracle WebCenter Interaction Portal is out of support.