Security Vulnerability in Oracle Retail Applications Affecting Multiple Versions
CVE-2017-10423
5.4MEDIUM
What is CVE-2017-10423?
An exploitation exists in the Oracle Retail Back Office component of Oracle Retail Applications, enabling low-privileged network attackers to exploit the vulnerability via HTTP. This weakness allows unauthorized data manipulations, including updates, inserts, or deletes, alongside unauthorized read access to some accessible data. While the flaw is specific to Oracle Retail Back Office, the ramifications can extend to affect other integrated products significantly, rendering data vulnerable to exposure if not mitigated appropriately.
Affected Version(s)
Retail Back Office 13.2
Retail Back Office 13.3
Retail Back Office 13.4