CVE-2019-2732: Medium severity oracle demantra demand management vulnerability
Vulnerability in the Oracle Demantra Demand Management component of Oracle Supply Chain Products Suite (subcomponent: Product Security). The supported version that is affected is 7.3.1.5.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Demantra Demand Management. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Demantra Demand Management accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this Oracle Demantra Demand Management vulnerability?
The vulnerability ID for this Oracle Demantra Demand Management vulnerability is CVE-2019-2732.
What is the severity of CVE-2019-2732?
The severity of CVE-2019-2732 is medium with a CVSS score of 5.3.
Which version of Oracle Demantra Demand Management is affected by CVE-2019-2732?
The version 7.3.1.5.2 of Oracle Demantra Demand Management is affected by CVE-2019-2732.
How can an attacker exploit CVE-2019-2732?
CVE-2019-2732 can be exploited by an unauthenticated attacker with network access via HTTP.
Is there a fix available for CVE-2019-2732?
To fix CVE-2019-2732, it is recommended to apply the security patch provided by Oracle.