CVE-2024-21265

CVSS 3.1 Score 8.1 of 10 (high)

Details

Published Oct 15, 2024
CWE ID 863

Summary

CVE-2024-21265 is a vulnerability found in the Oracle Site Hub component of the Oracle E-Business Suite, affecting versions 12.2.3 to 12.2.13. This weakness allows low-privileged attackers with network access via HTTP to exploit the system, potentially leading to unauthorized creation, deletion, or modification of critical data within Oracle Site Hub. The CVSS 3.1 Base Score for this vulnerability is 8.1, indicating a high severity level with significant impacts on confidentiality and integrity. To remediate this issue, organizations should apply the necessary security patches provided by Oracle as detailed in their security alerts. Without timely remediation, this vulnerability poses a serious threat to an organization's sensitive data and overall security posture.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share