Unspecified Vulnerability in Oracle E-Business Suite by Oracle
CVE-2008-5446

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
14 January 2009

Summary

A vulnerability in the Oracle Applications Framework component of Oracle E-Business Suite versions 11.5.10 CU2 and 12.0.6 allows remote authenticated users to compromise confidentiality through unknown vectors. Reports indicate that this issue may relate to unrestricted guest access to the 'About Us Page' within the Oracle Applications Framework, enabling attackers to extract sensitive system and application environment data.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.