Vulnerability in Oracle Hyperion Lifecycle Management Shared Services
CVE-2020-14752
4.2MEDIUM
Summary
A vulnerability exists in Oracle's Hyperion Lifecycle Management product within the Shared Services component that allows a high-privileged attacker with network access to exploit the system via HTTP. The attack relies on user interaction from another individual, making it particularly challenging to execute. If successfully exploited, this vulnerability can lead to unauthorized creation, deletion, or modification of critical data within Hyperion Lifecycle Management, potentially compromising all accessible data.
Affected Version(s)
Hyperion Lifecycle Management 11.1.2.4
References
CVSS V3.1
Score:
4.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved