CVE-2014-6523: Medium severity oracle e-business suite vulnerability
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.2, 12.2.3, and 12.2.4 allows remote authenticated users to affect confidentiality via vectors related to REST Interface.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6523?
CVE-2014-6523 is considered to have a moderate severity rating due to its potential impact on confidentiality.
How do I fix CVE-2014-6523?
To fix CVE-2014-6523, it is recommended to apply the latest security patches provided by Oracle for affected versions of E-Business Suite.
Who is affected by CVE-2014-6523?
CVE-2014-6523 affects remote authenticated users of Oracle E-Business Suite versions 12.1.3, 12.2.2, 12.2.3, and 12.2.4.
What is the impact of CVE-2014-6523?
The impact of CVE-2014-6523 allows remote authenticated users to compromise confidentiality through the REST Interface.
Is there a workaround for CVE-2014-6523?
As a temporary measure, it is advisable to limit access to the REST Interface for authenticated users until an official patch is applied.