Vulnerability in Oracle Banking Corporate Lending Component of Oracle Financial Services Applications
CVE-2018-2707
8.1HIGH
What is CVE-2018-2707?
A vulnerability exists in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications, affecting versions 12.3.0 and 12.4.0. This issue allows a low-privileged attacker with network access via HTTP to exploit the system, potentially leading to unauthorized creation, deletion, or modification of critical data. Additionally, successful exploitation may result in a denial-of-service condition, causing the application to hang or crash repeatedly. This vulnerability could seriously disrupt access to essential banking services and impact data integrity.
Affected Version(s)
Banking Corporate Lending 12.3.0
Banking Corporate Lending 12.4.0