漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Home page). The supported version that is affected is 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Applications Framework accessible data as well as unauthorized access to critical data or complete access to all Oracle Applications Framework accessible data. CVSS 3.1 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Vulnerability Type
N/A
Vulnerability Title
Oracle Applications Framework 安全漏洞
Vulnerability Description
Oracle Applications Framework是美国甲骨文(Oracle)公司的一个基于MVC的Web开发框架。 Oracle Applications Framework Home page 12.2.10 存在安全漏洞,该漏洞允许未经身份验证的攻击者通过HTTP进行网络访问,从而危害Oracle应用程序框架。导致未授权创建、删除或修改关键数据或所有Oracle应用程序框架可访问数据,以及未授权访问关键数据或全部Oracle应用程序框架可访问数据。
CVSS Information
N/A
Vulnerability Type
N/A