CVE-2016-0545

Vulnerability updated 4 months ago (2024-05-04T21:19:12.686Z)
Download STIX
Preview STIX
CVE-2016-0545 is a software vulnerability that affects the Oracle E-Business Suite. It is a flaw in the software's design or implementation that potentially allows unauthorized access or manipulation of data. This vulnerability was one of several exploited by the group known as Gold Melody between July 2020 and July 2022, according to cybersecurity firm Secureworks. The group leveraged this and other flaws to gain initial access to systems, using them as vectors for further exploitation. In addition to CVE-2016-0545, Gold Melody also exploited vulnerabilities in Apache Struts (CVE-2017-5638), Sitecore XP (CVE-2021-42237), and Flexera FlexNet (CVE-2021-4104). These attacks were observed across five separate incident response engagements conducted by Secureworks. The group took advantage of these vulnerabilities to breach systems, demonstrating a wide range of tools and tactics in their operations. The modus operandi of Gold Melody involved exploiting known vulnerabilities in internet-exposed servers to gain initial access. Besides the Oracle E-Business Suite, they targeted other systems such as WebLogic, Sitecor, Apache Struts, Log4j, JBoss MQ Java Message Service, and Citrix ShareFile. By exploiting these vulnerabilities, the group was able to infiltrate systems, indicating a sophisticated understanding of software vulnerabilities and a high level of technical skill.
Description last updated: 2024-05-04T20:35:54.132Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the CVE-2016-0545 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago
Gold Melody Attacking Organizations With Burp Extension, Mimikatz, and Other Tools
CERT-EU
a year ago
GOLD MELODY: Profile of an Initial Access Broker
CERT-EU
a year ago
Cyber Group 'Gold Melody' Selling Compromised Access to Ransomware Attackers
CERT-EU
a year ago
Gold Melody IAB exploits flaws in Oracle, Apache, Sitecore software to hack into corporate networks