CVE-2022-39411: Medium severity oracle transportation execution vulnerability
Vulnerability in the Oracle Transportation Management product of Oracle Supply Chain (component: Business Process Automation). Supported versions that are affected are 6.4.3 and 6.5.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Transportation Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Transportation Management accessible data. CVSS 3.1 Base Score 4.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-39411?
The severity of CVE-2022-39411 is medium.
What is the affected version of Oracle Transportation Management?
The affected versions of Oracle Transportation Management are 6.4.3 and 6.5.1.
How can an attacker exploit CVE-2022-39411?
An attacker with high privileges and network access via HTTP can easily exploit CVE-2022-39411.
How can I fix CVE-2022-39411?
To fix CVE-2022-39411, apply the necessary patches provided by Oracle.
Where can I find more information about CVE-2022-39411?
You can find more information about CVE-2022-39411 at the Oracle Security Alerts page: https://www.oracle.com/security-alerts/cpuoct2022.html