Unauthenticated Remote Access Vulnerability in Oracle SOA Suite by Oracle
CVE-2022-21562
7.5HIGH
Summary
A vulnerability exists in Oracle SOA Suite, specifically within the Fabric Layer component, which could be exploited by attackers with network access. This allows unauthorized parties to create, delete, or alter critical data within the affected versions of the software. Organizations using Oracle SOA Suite versions 12.2.1.3.0 and 12.2.1.4.0 should take immediate action to mitigate the risks associated with potential unauthorized access and data compromise.
Affected Version(s)
SOA Suite 12.2.1.3.0
SOA Suite 12.2.1.4.0
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved