Unauthorized Access Vulnerability in Oracle E-Business Suite Administration Component
CVE-2017-10332
7.5HIGH
Summary
The vulnerability affects the Oracle Universal Work Queue component in Oracle E-Business Suite, enabling an unauthenticated attacker with network access via HTTP to exploit this weakness. Once successfully targeted, attackers can gain unauthorized access to sensitive data, potentially compromising the integrity of critical business operations. This vulnerability primarily impacts versions 12.1.1 through 12.2.7, allowing for risk of data exposure and operational disruption.
Affected Version(s)
Universal Work Queue 12.1.1
Universal Work Queue 12.1.2
Universal Work Queue 12.1.3
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved