Vulnerability in Oracle Commerce Platform's Dynamo Application Framework
CVE-2020-14532
4.7MEDIUM
What is CVE-2020-14532?
A vulnerability exists within the Oracle Commerce Platform's Dynamo Application Framework, allowing unauthenticated attackers to gain network access via HTTP. This can result in unauthorized updates, insertions, or deletions of accessible data, especially with human interaction required from an unsuspecting user. Although the primary issue is in the Oracle Commerce Platform, the implications of a successful attack may extend to other associated products.
Affected Version(s)
Commerce Platform 11.1
Commerce Platform 11.2
Commerce Platform < 11.3.1