Oracle E-Business Suite Vulnerability in Advanced Collections Component
CVE-2021-2247
8.1HIGH
Summary
A vulnerability exists in the Advanced Collections component of Oracle E-Business Suite, affecting multiple versions. This security issue allows an attacker with minimal privileges and network access via HTTP to exploit the system. The consequences can include unauthorized creation, deletion, or modification of critical data, as well as complete unauthorized access to all data within Oracle Advanced Collections. Organizations using the affected versions should take immediate steps to secure their systems and apply available updates to mitigate this risk.
Affected Version(s)
Advanced Collections 12.1.1-12.1.3
Advanced Collections 12.2.3-12.2.10
References
CVSS V3.1
Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved