Vulnerability in Oracle Workflow Product of Oracle E-Business Suite
CVE-2020-2753
5.3MEDIUM
What is CVE-2020-2753?
An unauthenticated access vulnerability exists in the Workflow Notification Mailer component of Oracle E-Business Suite. When exploited, this vulnerability allows an attacker with network access to compromise Oracle Workflow, enabling unauthorized operations such as updates, inserts, or deletions of accessible data. Supported versions 12.1.3, and 12.2.3 through 12.2.9 are notably affected, highlighting the critical need for security updates to protect sensitive workflow data.
Affected Version(s)
Workflow 12.1.3
Workflow 12.2.3-12.2.9