Vulnerability in Oracle Trade Management Product of Oracle E-Business Suite
CVE-2020-2822

8.2HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 April 2020

Summary

The vulnerability in Oracle Trade Management predicated on improper authentication allows unauthenticated attackers to exploit the system via HTTP, potentially compromising critical data. Although the flaw resides within Oracle Trade Management, the impact could extend to associated products, leading to unauthorized access, data manipulation, and significant security breaches. Successful exploitation requires human interaction, highlighting the importance of user awareness and system security safeguards.

Affected Version(s)

Trade Management 12.1.1-12.1.3

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.