CyberRota Analysis
AI-GeneratedA vulnerability exists in the Oracle Lease and Finance Management component of the Oracle E-Business Suite, affecting versions 12.2.7 to 12.2.15. This easily exploitable flaw allows a high-privileged attacker with network access via HTTP to take over the affected system, leading to significant impacts on confidentiality, integrity, and availability. Organizations using these versions should prioritize immediate remediation to mitigate the risk of potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.7-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Lease and Finance Management. Successful attacks of this vulnerability can result in takeover of Oracle Lease and Finance Management. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).