{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-02T05:43:37.442","vulnerabilities":[{"cve":{"id":"CVE-2017-3532","sourceIdentifier":"secalert_us@oracle.com","published":"2017-04-24T19:59:03.863","lastModified":"2026-05-13T00:24:29.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the Oracle Retail Warehouse Management System component of Oracle Retail Applications (subcomponent: Security). Supported versions that are affected are 13.2, 14.0 and 15.0. Easily \"exploitable\" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Retail Warehouse Management System. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Retail Warehouse Management System, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Retail Warehouse Management System accessible data as well as unauthorized read access to a subset of Oracle Retail Warehouse Management System accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N)."},{"lang":"es","value":"Vulnerabilidad en el componente Oracle Retail Warehouse Management System de Oracle Retail Applications (subcomponente: Security). Versiones compatibles que son afectadas son 13.2, 14.0 y 15.0. Vulnerabilidad fácilmente explotable permite a atacante autenticado con acceso a la red a través de HTTP comprometer Oracle Retail Warehouse Management System. Los ataques exitosos requieren la interacción humana de una persona más que un atacante y aunque la vulnerabilidad está en el sistema de administración de almacenes minoristas de Oracle, los ataques pueden afectar significativamente a otros productos. Los ataques exitosos de esta vulnerabilidad pueden dar lugar a actualizaciones no autorizadas, insertar o eliminar acceso a algunos de los datos accesibles de Oracle Retail Warehouse Management System así como al acceso de lectura no autorizado a un subconjunto de datos accesibles de Oracle Retail Warehouse Management System.. CVSS 3.0 Base Score 6.1 (Impactos de confidencialidad e integridad). Vector CVSS: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N)."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","baseScore":6.1,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:N","baseScore":5.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_warehouse_management_system:13.2:*:*:*:*:*:*:*","matchCriteriaId":"1705E2F8-83EC-4523-8560-C82856DB8CD5"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_warehouse_management_system:14.0:*:*:*:*:*:*:*","matchCriteriaId":"82839D03-B92A-4065-B899-5B8E5B9FC455"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_warehouse_management_system:15.0:*:*:*:*:*:*:*","matchCriteriaId":"1C96B772-094A-41DA-8000-C2B83BBB344C"}]}]}],"references":[{"url":"http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html","source":"secalert_us@oracle.com","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/97749","source":"secalert_us@oracle.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/97749","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}}]}