Vulnerability in Oracle E-Business Suite’s Marketing Administration Component
CVE-2020-2858
8.2HIGH
What is CVE-2020-2858?
An exploitable vulnerability exists in the Marketing Administration component of Oracle E-Business Suite, affecting versions 12.1.1 to 12.1.3. An unauthenticated attacker with network access can exploit this vulnerability via HTTP, leading to unauthorized access to critical data. This may allow attackers to view, update, insert, or delete information in Oracle Marketing without proper authorization. Successful exploitation necessitates human interaction from someone other than the perpetrator, thereby amplifying the risk to sensitive data across interconnected Oracle systems.
Affected Version(s)
Marketing 12.1.1-12.1.3