Access Control Vulnerability in Oracle Installed Base of Oracle E-Business Suite
CVE-2021-2231
8.1HIGH
What is CVE-2021-2231?
A significant access control vulnerability exists in the API component of the Oracle Installed Base within the Oracle E-Business Suite. This flaw permits low-privileged attackers with network access via HTTP to exploit the system, leading to unauthorized capabilities for creating, deleting, or modifying critical data. Organizations may face severe risks as this vulnerability allows unauthorized access to sensitive information across the Oracle Installed Base, making it essential for users to implement security measures and apply necessary patches as advised by Oracle.
Affected Version(s)
Installed Base 12.1.3