First published: Tue Jul 23 2019(Updated: )
Vulnerability in the Oracle Demantra Demand Management component of Oracle Supply Chain Products Suite (subcomponent: Product Security). The supported version that is affected is 7.3.1.5.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Demantra Demand Management. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Demantra Demand Management accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Demantra Demand Management | =7.3.1.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Oracle Demantra Demand Management vulnerability is CVE-2019-2732.
The severity of CVE-2019-2732 is medium with a CVSS score of 5.3.
The version 7.3.1.5.2 of Oracle Demantra Demand Management is affected by CVE-2019-2732.
CVE-2019-2732 can be exploited by an unauthenticated attacker with network access via HTTP.
To fix CVE-2019-2732, it is recommended to apply the security patch provided by Oracle.