Vulnerability in Oracle Email Center Component of Oracle E-Business Suite
CVE-2018-3256
4.7MEDIUM
Summary
The Oracle Email Center component within the Oracle E-Business Suite contains a vulnerability that is easily exploitable and allows unauthenticated attackers with network access via HTTP to compromise the system. This vulnerability requires human interaction from an individual other than the attacker for successful exploitation, affecting not only the Email Center but potentially impacting other interconnected products within the suite. Successful attacks can allow unauthorized operations, including updating, inserting, or deleting accessible data.
Affected Version(s)
Email Center 12.1.1
Email Center 12.1.2
Email Center 12.1.3
References
CVSS V3.1
Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved