CVE-2016-3551: Unspecified vulnerability in the Oracle Web Services component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.
infovulnerability
security
Summary
CVE-2016-3551 is an unspecified vulnerability in Oracle Web Services (a component of Oracle Fusion Middleware, which is enterprise software for managing business processes) that affects versions 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, and 12.2.1.0.0. Remote attackers can exploit this flaw through the JAXWS Web Services Stack (the software layer that handles web service communication) to compromise confidentiality, integrity, and availability of the system.
Vulnerability Details
CVSS Score
10
EPSS (30-day exploit probability)
EPSS: 3.8%
Classification
Attack SophisticationModerate
Original source: https://nvd.nist.gov/vuln/detail/CVE-2016-3551
First tracked: February 15, 2026 at 08:43 PM
Classified by LLM (prompt v3) · confidence: 95%