PT-2019-16460 · Oracle · Oracle Demantra Demand Management

Published

2019-07-23

·

Updated

2020-08-24

·

CVE-2019-2732

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Demantra Demand Management version 7.3.1.5.2
Description The issue allows an unauthenticated attacker with network access via HTTP to compromise Oracle Demantra Demand Management, resulting in unauthorized read access to a subset of accessible data.
Recommendations For version 7.3.1.5.2, update to a newer version that contains a fix for this issue, as the current version is affected and allows for easy exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-2732

Affected Products

Oracle Demantra Demand Management