CVE-2016-3520: Oracle E-Business Suite

Medium severity, CVSS 4.9. EPSS: 1.8% chance of exploitation in the next 30 days.

Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote administrators to affect confidentiality via vectors related to AOL Diagnostic tests.

Affected products

  • Oracle E-Business Suite: version 12.1.3 only; version 12.2.3 only; version 12.2.4 only; version 12.2.5 only

Published 2016-07-21. Last modified 2026-06-17.