Vulnerability in Oracle Trade Management Component of Oracle E-Business Suite
CVE-2022-21250
8.1HIGH
Summary
A vulnerability has been identified in the Oracle Trade Management component of Oracle E-Business Suite, allowing low-privileged attackers with network access via HTTP to exploit the system. Successful exploitation can lead to unauthorized creation, deletion, or modification of critical data, as well as full access to sensitive information within Oracle Trade Management. This poses a significant risk to data integrity and confidentiality within the affected versions, necessitating immediate attention and remediation to protect against potential data breaches.
Affected Version(s)
Trade Management 12.2.3-12.2.11
References
CVSS V3.1
Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved