VDB
CVE-2016-2346
CVE-2016-2346
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Allround Automations PL/SQL Developer 11 before 11.0.6 relies on unverified HTTP data for updates, which allows man-in-the-middle attackers to execute arbitrary code by modifying fields in the client-server data stream.
EPSS 0.22% · 45.0th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
0.22%
45.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| allroundautomations | pl\/sql_developer | 11.0, 11.0.1, 11.0.2 |
Timeline
- Apr 25, 2016 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score