Jan. 18, 2023, 12:15 a.m. |

National Vulnerability Database web.nvd.nist.gov

Vulnerability in the Oracle Mobile Field Service product of Oracle E-Business Suite (component: Synchronization). Supported versions that are affected are 12.2.3-12.2.12. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Mobile Field Service. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Mobile Field Service accessible data. CVSS 3.1 Base Score 7.5 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N).

access attacks base business compromise critical critical data cve cvss data deletion http integrity mobile modification network network access oracle oracle e-business suite product result score service synchronization vulnerability

Malware Analyst - TASO / Active Secret

@ Peraton | Arlington, VA, United States

Information Security Engineer

@ Deel | Anywhere (APAC)

Cybersecurity Engineer

@ Booz Allen Hamilton | USA, DC, Washington (1125 15th St NW)

Director, Security Engineering

@ Warner Bros. Discovery | GA Atlanta 1050 Techwood Drive NW

Consultant Senior Securité Réseaux

@ Devoteam | Tunis, Tunisia

SOC Analyst, Mid

@ Peraton | Washington, DC, United States