Oracle Financial Services Applications Vulnerability in Banking Payments Component
CVE-2018-2708
5.3MEDIUM
Summary
A vulnerability exists in the Oracle Banking Payments component of Oracle Financial Services Applications that affects versions 12.3.0 and 12.4.0. This vulnerability allows an attacker with low privileges and network access via HTTP to potentially compromise the Oracle Banking Payments system. If successfully exploited, the attacker may gain unauthorized access to sensitive data or attain complete access to all data within Oracle Banking Payments. This could lead to serious implications for data confidentiality and integrity.
Affected Version(s)
Banking Payments 12.3.0
Banking Payments 12.4.0
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved