First published: Wed Oct 15 2014(Updated: )
Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 12.0.6, 12.1.3, 12.2.2, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Oracle Forms.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle E-Business Suite | =12.0.6 | |
Oracle E-Business Suite | =12.1.3 | |
Oracle E-Business Suite | =12.2.2 | |
Oracle E-Business Suite | =12.2.3 | |
Oracle E-Business Suite | =12.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-4278 has a high severity as it allows remote attackers to affect confidentiality, integrity, and availability.
To fix CVE-2014-4278, you should apply the latest security patches provided by Oracle for the affected versions of Oracle E-Business Suite.
CVE-2014-4278 affects Oracle E-Business Suite versions 12.0.6, 12.1.3, 12.2.2, 12.2.3, and 12.2.4.
CVE-2014-4278 impacts the Oracle Applications Technology Stack component specifically related to Oracle Forms.
Yes, CVE-2014-4278 can potentially be exploited by remote attackers without authentication through various unspecified vectors.