Unauthenticated Input Vulnerability in Oracle Business Intelligence Enterprise Edition
CVE-2022-21448
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 19 April 2022
What is CVE-2022-21448?
A vulnerability exists in Oracle Business Intelligence Enterprise Edition that allows unauthenticated attackers to exploit the system through HTTP. This exploit can lead to unauthorized updates, inserts, or deletions of accessible data. The vulnerability specifically affects version 5.9.0.0.0 and can have repercussions on other interconnected products within the Oracle Fusion Middleware. Successful exploitation necessitates human interaction from a non-attacker, making it an insidious threat that could compromise data confidentiality and integrity, impacting the overall security posture of organizations relying on this platform.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Business Intelligence Enterprise Edition 5.9.0.0.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved