ulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Partners). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Marketing accessible data as well as unauthorized read access to a subset of Oracle Marketing accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N).
| Link | Resource |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2024.html | Vendor Advisory |
| https://www.oracle.com/security-alerts/cpujul2024.html | Vendor Advisory |
17 Jun 2025, 20:01
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.oracle.com/security-alerts/cpujul2024.html - Vendor Advisory | |
| First Time |
Oracle marketing
Oracle |
|
| CPE | cpe:2.3:a:oracle:marketing:*:*:*:*:*:*:*:* |
21 Nov 2024, 08:53
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.oracle.com/security-alerts/cpujul2024.html - |
01 Aug 2024, 13:46
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| CWE | CWE-284 |
16 Jul 2024, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2024-07-16 23:15
Updated : 2025-06-17 20:01
NVD link : CVE-2024-21169
Mitre link : CVE-2024-21169
CVE.ORG link : CVE-2024-21169
JSON object : View
Improper Access Control