Oracle Customer Interaction History 12.2.4 Remote Code Execution Vulnerability
30 Jan. 2017
Summary
Oracle Customer Interaction History is prone to a remote code-execution vulnerability.This allows a remote attacker to exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts may result in a denial-of-service condition.
Vulnerable Systems:
* Oracle Customer Interaction History 12.1.1
* Oracle Customer Interaction History 12.1.2
* Oracle Customer Interaction History 12.1.3
* Oracle Customer Interaction History 12.2.3
* Oracle Customer Interaction History 12.2.4
vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1 through 12.1.3, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality and integrity via vectors