Vulnerability in Hyperion Lifecycle Management by Oracle
CVE-2020-14772
4.2MEDIUM
Summary
A vulnerability exists in the Hyperion Lifecycle Management product of Oracle Hyperion that allows an attacker with high privileges and network access via HTTP to compromise the system. This vulnerability requires human interaction from another individual to successfully exploit it. If a successful attack occurs, it can lead to unauthorized actions, including the creation, deletion, or modification of critical data, affecting all data accessible in Hyperion Lifecycle Management.
Affected Version(s)
Hyperion Lifecycle Management 11.1.2.4
References
CVSS V3.1
Score:
4.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved