Vulnerability in Oracle E-Business Suite Knowledge Management Component
CVE-2019-2660
8.2HIGH
What is CVE-2019-2660?
A security vulnerability exists in the Oracle Knowledge Management component of the Oracle E-Business Suite. This flaw allows an unauthenticated attacker with network access via HTTP to potentially compromise the Knowledge Management system. While the attacks require human interaction from another individual, they can lead to severe repercussions, including unauthorized access to sensitive data. Furthermore, the successful exploitation may allow attackers to update, insert, or delete data within Oracle Knowledge Management, thereby affecting the integrity and confidentiality of the data stored in the system.
Affected Version(s)
Knowledge Management 12.1.1
Knowledge Management 12.1.2
Knowledge Management 12.1.3