Unauthorized Access Vulnerability in Oracle E-Business Suite Mobile Field Service
CVE-2021-35570
8.1HIGH
What is CVE-2021-35570?
An easily exploitable vulnerability in the Oracle Mobile Field Service component of the Oracle E-Business Suite allows low privileged attackers with network access through HTTP to compromise the system. Successful exploitation of this vulnerability can lead to unauthorized creation, deletion, or modification of critical data, resulting in the potential exposure of all accessible data in Oracle Mobile Field Service.
Affected Version(s)
Mobile Field Service 12.1.1-12.1.3
Mobile Field Service 12.2.3-12.2.10