First published: Tue Oct 18 2011(Updated: )
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Attachments / File Upload.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle E-Business Suite | =12.0.6 | |
Oracle E-Business Suite | =11.5.10.2 | |
Oracle E-Business Suite | =12.1.2 | |
Oracle E-Business Suite | =12.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2303 has a medium severity rating, indicating potential risks to data integrity for authenticated users.
To mitigate CVE-2011-2303, apply the latest security patches provided by Oracle for affected versions of E-Business Suite.
CVG-2011-2303 affects users of Oracle E-Business Suite versions 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3.
CVE-2011-2303 may be exploited via unknown vectors related to attachments or file uploads by remote authenticated users.
Currently, the recommended approach is to apply the security patches, as no documented workaround exists for CVE-2011-2303.