Vulnerability in Oracle Purchasing of Oracle E-Business Suite
CVE-2021-2262
8.1HIGH
Summary
The vulnerability in the Oracle Purchasing component of Oracle E-Business Suite allows low-privileged attackers with network access via HTTPS to gain unauthorized access. Successful exploitation can lead to the creation, deletion, or alteration of critical data. Attackers may also gain full access to sensitive information, risking the integrity and confidentiality of all data within the Oracle Purchasing system.
Affected Version(s)
Purchasing 12.1.3
References
CVSS V3.1
Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved