Vulnerability in Oracle CRM Technical Foundation Product by Oracle
CVE-2021-2092
8.2HIGH
What is CVE-2021-2092?
An exploitable vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite allows unauthenticated attackers with network access via HTTP to potentially compromise sensitive data. Successful exploitation requires human interaction from a user other than the attacker and may lead to unauthorized access to critical data, allowing for data modification, deletion, or insertion. This vulnerability affects multiple supported versions of the product and poses significant risks since an attacker can gain extensive privileges over accessible information.
Affected Version(s)
CRM Technical Foundation 12.1.3
CRM Technical Foundation 12.2.3-12.2.10