Oracle E-Business Suite Open Redirection

Discussion in 'News Aggregator' started by Packet Storm, 18 Jul 2015.

  1. Packet Storm

    Packet Storm Guest

    Oracle E-Business Suite is prone to a remote URL-redirection vulnerability. This vulnerability may allow a malicious user to perform a phishing attack by sending a crafted URL of Oracle E-Business Suite Form Servlet page to another user. When an unsuspecting victim follows the URI, they may be redirected to an attacker-controlled site; this may aid in phishing attacks. Versions affected include 11.5.10.2, 12.0.6, and 12.1.3.

    Continue reading...
     

Share This Page

Loading...