Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-18704 | Vulnerability in the Oracle Applications Technology product of Oracle E-Business Suite (component: Templates). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Technology. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Applications Technology accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). |
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpuapr2024.html |
|
Tue, 25 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
ssvc
|
Wed, 27 Nov 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle applications Technology Stack
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:oracle:applications_technology_stack:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle applications Technology Stack
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2025-03-25T15:28:53.367Z
Reserved: 2023-12-07T22:28:10.642Z
Link: CVE-2024-20990
Updated: 2024-08-01T22:13:41.405Z
Status : Modified
Published: 2024-04-16T22:15:11.950
Modified: 2025-03-25T16:15:17.773
Link: CVE-2024-20990
No data.
OpenCVE Enrichment
No data.
EUVD