PT-2013-1529 · Oracle · Jd Edwards Enterpriseone Tools+1

Published

2013-01-17

·

Updated

2013-10-11

·

CVE-2012-1678

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle JD Edwards Products versions 8.98 through 9.1 Oracle JD Edwards Products version 24
Description The issue affects confidentiality and is related to Enterprise Infrastructure SEC in the JD Edwards EnterpriseOne Tools component. It allows remote authenticated users to exploit the vulnerability.
Recommendations For Oracle JD Edwards Products versions 8.98 through 9.1, update to a version that includes the fix for this issue. For Oracle JD Edwards Products version 24, update to a version that includes the fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2012-1678

Affected Products

Jd Edwards Enterpriseone Tools
Jd Edwards Products