vulnerability

Oracle E-Business Suite: CVE-2020-6950: Critical Patch Update

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Jun 2, 2021
Added
Jun 20, 2022
Modified
Oct 16, 2025

Description

Directory traversal in Eclipse Mojarra before 2.3.14 allows attackers to read arbitrary files via the loc parameter or con parameter.

Solutions

oracle-ebs-12_2_10-apply-patch-30448458oracle-ebs-12_2_10-apply-patch-33457157oracle-ebs-12_2_11-apply-patch-30448458oracle-ebs-12_2_11-apply-patch-33457157oracle-ebs-12_2_11-apply-patch-33568131oracle-ebs-12_2_6-apply-patch-30448458oracle-ebs-12_2_6-apply-patch-33457157oracle-ebs-12_2_7-apply-patch-30448458oracle-ebs-12_2_7-apply-patch-33457157oracle-ebs-12_2_8-apply-patch-30448458oracle-ebs-12_2_8-apply-patch-33457157oracle-ebs-12_2_9-apply-patch-30448458oracle-ebs-12_2_9-apply-patch-33457157oracle-ebs-jan-2022-cpu-12_2
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.