AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-16954

MEDIUM · CVSS 6.1 EPSS 1.07%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-09-18 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.1. It affects Oracle.

CVE
CVE-2018-16954
Severity
MEDIUM
CVSS
6.1
EPSS
1.07%
Oracle

Original NVD Description

An issue was discovered in Oracle WebCenter Interaction Portal 10.3.3. The login function of the portal is vulnerable to insecure redirection (also called an open redirect). The in_hi_redirect parameter is not validated by the application after a successful login. NOTE: this CVE is assigned by MITRE and isn't validated by Oracle because Oracle WebCenter Interaction Portal is out of support.

Related CVEs

Other vulnerabilities affecting the same vendor(s)