Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Quotes). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Trade Management accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVSS Details
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Oracle Ebs | oracle-ebs-12_2_10-apply-patch-33168664oracle-ebs-12_2_10-apply-patch-33207251oracle-ebs-12_2_10-apply-patch-33286000oracle-ebs-12_2_4-apply-patch-33168623oracle-ebs-12_2_5-apply-patch-33168635oracle-ebs-12_2_6-apply-patch-33168644oracle-ebs-12_2_7-apply-patch-33168651oracle-ebs-12_2_7-apply-patch-33245199oracle-ebs-12_2_8-apply-patch-33168651oracle-ebs-12_2_8-apply-patch-33245199oracle-ebs-12_2_9-apply-patch-33168655oracle-ebs-12_2_9-apply-patch-33245199oracle-ebs-oct-2021-cpu-12_1oracle-ebs-oct-2021-cpu-12_2 | Jun 20, 2022 | Oct 20, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub