Exploitable Vulnerability in Oracle Communications Billing and Revenue Management
CVE-2022-21424
8.3HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 19 April 2022
What is CVE-2022-21424?
A vulnerability exists in Oracle Communications Billing and Revenue Management's Connection Manager component, enabling attackers with low privileges and network access to compromise the system. This weakness can lead to unauthorized creation, deletion, or modification of critical data, as well as unauthorized access to sensitive information. It may also allow attackers to cause a partial denial of service, impacting the availability of the application. To mitigate risks, it is crucial for organizations using this version to apply necessary updates and security measures.
Affected Version(s)
Communications Billing and Revenue Management 12.0.0.4