CVE-2024-21143

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jul 16, 2024
Updated: Jul 17, 2024

Summary

CVE-2024-21143 is a vulnerability affecting Oracle iStore in versions 12.2.3 to 12.2.13 of Oracle E-Business Suite's User Management component. This issue is classified as easily exploitable and allows unauthenticated attackers with network access via HTTP to gain unauthorized read access to a subset of Oracle iStore data. The impact of successful attacks is rated as low (confidentiality). The CVSS Base Score is 5.3. (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share