Vulnerabilities Fixed in Oracle E-Business Suite Components (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- Oracle released patches for multiple E-Business Suite components
- Vulnerabilities allow SQL injection and full system compromise
- Affects versions 12.2.3 through 12.2.15
"Oracle has patched vulnerabilities in multiple Oracle E-Business Suite components (versions 12.2.3 to 12.2.15). The flaws could allow attackers with low privileges over HTTP/HTTPS to achieve full system compromise, SQL injection, and unauthorized data manipulation. The advisory notes the potential for critical impacts on confidentiality, integrity, and availability."
no comments yet.