Unauthorized Data Access in Oracle REST Data Services by Oracle
CVE-2020-14745
4.3MEDIUM
What is CVE-2020-14745?
A security vulnerability exists in Oracle REST Data Services that allows low privileged attackers with network access via HTTP to gain unauthorized read access to sensitive data. This flaw affects multiple versions of the product, leading to potential exposure of accessible data that should otherwise remain confidential. It is essential for users of Oracle REST Data Services to apply the necessary updates and security patches to safeguard their data integrity.
Affected Version(s)
REST Data Services 11.2.0.4
REST Data Services 12.1.0.2
REST Data Services 12.2.0.1