Vulnerability in Oracle E-Business Suite's Universal Work Queue Component
CVE-2017-3417
8.2HIGH
What is CVE-2017-3417?
Oracle E-Business Suite contains a network vulnerability in the Universal Work Queue component that allows an unauthenticated attacker with HTTP access to exploit it. Successful exploitation of this vulnerability can lead to unauthorized access to sensitive data, enabling an attacker to potentially update, insert, or delete data within the Oracle Universal Work Queue. The exploitation process requires human interaction by an individual other than the attacker, raising significant concerns regarding data integrity and confidentiality across multiple products within the Oracle E-Business Suite ecosystem.
Affected Version(s)
Universal Work Queue 12.1.1
Universal Work Queue 12.1.2
Universal Work Queue 12.1.3