Vulnerability in Oracle Financial Services Price Creation and Discovery User Interface
CVE-2020-2942
7.1HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 15 April 2020
What is CVE-2020-2942?
A vulnerability in the User Interface of Oracle Financial Services Price Creation and Discovery enables a low-privileged attacker with HTTP network access to compromise the application. This flaw permits unauthorized operations such as creation, modification, or deletion of critical data, along with unauthorized read access to a portion of data within the application. The affected supported version is 8.0.7, where exploitation could severely impact data confidentiality and integrity.
Affected Version(s)
Financial Services Price Creation and Discovery 8.0.7