Unauthenticated Access Flaw in Oracle iStore User Management
CVE-2024-21143
5.3MEDIUM
What is CVE-2024-21143?
A vulnerability exists in the User Management component of Oracle iStore within the Oracle E-Business Suite. This flaw allows an unauthenticated attacker with network access via HTTP to potentially exploit Oracle iStore. Successful exploitation could lead to unauthorized access to sensitive data, making personal and corporate information at risk. The affected versions include Oracle iStore from 12.2.3 to 12.2.13. Organizations using these versions should review their security measures immediately.
Affected Version(s)
iStore 12.2.3 <= 12.2.13