CVE-2016-3506: Oracle Jdbc

High severity, CVSS 8.1. EPSS: 3.5% chance of exploitation in the next 30 days.

Unspecified vulnerability in the JDBC component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2; the Oracle Retail Xstore Point of Service 5.5, 6.0, 6.5, 7.0, 7.1, 15.0, and 16.0; the Oracle Retail Warehouse Management System 14.04, 14.1.3, and 15.0.1; the Oracle Retail Workforce Management 1.60.7, and 1.64.0; the Oracle Retail Clearance Optimization Engine 13.4; the Oracle Retail Markdown Optimization 13.4 and 14.0; and Oracle Retail Merchandising System 16.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

Affected products

  • Oracle Jdbc: version 11.2.0.4 only; version 12.1.0.1 only; version 12.1.0.2 only

Published 2016-07-21. Last modified 2026-06-17.