Unrestricted Access Vulnerability in Oracle Fusion Middleware MapViewer
CVE-2020-14607

6.1MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 July 2020

Summary

The vulnerability in Oracle Fusion Middleware MapViewer allows an unauthenticated attacker to gain access to sensitive data via HTTP. Although exploitation requires human intervention from a victim, successful attacks can lead to unauthorized updates, insertions, or deletions of data, as well as possible unauthorized read access. This issue primarily affects the specified versions of the MapViewer but may have broader implications on related products due to the interconnected nature of Oracle's software suite.

Affected Version(s)

Fusion Middleware MapViewer 12.2.1.3.0

Fusion Middleware MapViewer 12.2.1.4.0

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.