Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25991 | Vulnerability in the Oracle iSupplier Portal product of Oracle E-Business Suite (component: Supplier Management). Supported versions that are affected are 12.2.6-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupplier Portal. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle iSupplier Portal accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). |
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpujan2023.html |
|
Wed, 18 Sep 2024 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2024-09-17T14:17:52.028Z
Reserved: 2022-12-17T19:26:00.688Z
Link: CVE-2023-21825
Updated: 2024-08-02T09:51:51.096Z
Status : Modified
Published: 2023-01-18T00:15:12.517
Modified: 2024-11-21T07:43:43.640
Link: CVE-2023-21825
No data.
OpenCVE Enrichment
No data.
EUVD