Vulnerability in Oracle Banking Trade Finance Product by Oracle
CVE-2022-21474
5.9MEDIUM
Summary
A vulnerability in the Oracle Banking Trade Finance product allows low-privileged attackers with network access to potentially compromise the system. Exploitation requires human interaction from a user other than the attacker. Successful exploitation could lead to unauthorized creation, deletion, or modification of critical data within the Oracle Banking Trade Finance environment. Additionally, it may allow unauthorized read access to some data and the capability to trigger partial denial of service, impacting the overall functionality and availability of the service.
Affected Version(s)
Banking Trade Finance 14.5
References
CVSS V3.1
Score:
5.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved