Unrestricted Access Vulnerability in Oracle Fusion Middleware MapViewer
CVE-2020-14607
6.1MEDIUM
Summary
The vulnerability in Oracle Fusion Middleware MapViewer allows an unauthenticated attacker to gain access to sensitive data via HTTP. Although exploitation requires human intervention from a victim, successful attacks can lead to unauthorized updates, insertions, or deletions of data, as well as possible unauthorized read access. This issue primarily affects the specified versions of the MapViewer but may have broader implications on related products due to the interconnected nature of Oracle's software suite.
Affected Version(s)
Fusion Middleware MapViewer 12.2.1.3.0
Fusion Middleware MapViewer 12.2.1.4.0
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved