Easily Exploitable Vulnerability in Oracle Depot Repair of Oracle E-Business Suite
CVE-2021-2229

8.1HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
22 April 2021

Summary

The vulnerability within the Oracle Depot Repair component of the Oracle E-Business Suite allows a low privileged attacker with network access to exploit the system via HTTP. This exploitation can lead to unauthorized actions, such as the creation, deletion, or modification of critical data. Attackers could potentially gain complete access to all data accessible through the Oracle Depot Repair system, resulting in significant security risks for organizations using affected versions.

Affected Version(s)

Depot Repair 12.1.1-12.1.3

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.