First published: Wed Oct 21 2020(Updated: )
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Infrastructure). Supported versions that are affected are 8.0.6-8.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Financial Services Analytical Applications Infrastructure. While the vulnerability is in Oracle Financial Services Analytical Applications Infrastructure, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Financial Services Analytical Applications Infrastructure. CVSS 3.1 Base Score 8.6 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Financial Services Analytical Applications Infrastructure | >=8.0.6.0.0<=8.1.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-14824 has been classified as a high severity vulnerability.
To remediate CVE-2020-14824, Oracle recommends updating to a fixed version of the software.
CVE-2020-14824 affects Oracle Financial Services Analytical Applications Infrastructure versions 8.0.6 to 8.1.0.
Yes, CVE-2020-14824 can be exploited remotely by an unauthenticated attacker.
CVE-2020-14824 affects the Infrastructure component of the Oracle Financial Services Analytical Applications.