CVE-2023-22093
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Summary
CVE-2023-22093 is a vulnerability affecting the Oracle iRecruitment component of Oracle E-Business Suite (versions 12.2.3-12.2.12). This issue allows unauthenticated attackers with network access via HTTP to compromise the system. Successful exploitation can result in unauthorized update, insert, or delete access to some data, as well as unauthorized read access to a subset of Oracle iRecruitment data. The vulnerability has a CVSS 3.1 Base Score of 6.5 for both Confidentiality and Integrity impacts. This easily exploitable issue can lead to significant data compromise. Oracle has released a patch to address this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Oracle E-Business Suite
Affected Vendors
- BonqDAO