Oracle JD Edwards EnterpriseOne Tools unspecified | CVE-2022-21464
NAME
Oracle JD Edwards EnterpriseOne Tools unspecified
- Platforms Affected:
Oracle JD Edwards EnterpriseOne Tools 9.2.6.2 - Risk Level:
8.2 - Exploitability:
Unproven - Consequences:
Other
DESCRIPTION
An unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools related to the Business Logic Infra SEC component could allow an unauthenticated attacker to cause low confidentiality impact, no integrity impact, and high availability impact.
CVSS 3.0 Information
- Privileges Required: None
- User Interaction: None
- Scope: Unchanged
- Access Vector: Network
- Access Complexity: Low
- Confidentiality Impact: Low
- Integrity Impact: None
- Availability Impact: High
- Remediation Level: Official Fix
MITIGATION
Refer to Oracle Critical Patch Update Advisory – April 2022 for patch, upgrade or suggested workaround information. See References.
- Reference Link:
https://www.oracle.com/security-alerts/cpuapr2022.html - Reference Link:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-21464
If you like the site, please consider joining the telegram channel and supporting us on Patreon using the button below.