5.5
CVSSv2

CVE-2014-0372

Published: 15/01/2014 Updated: 09/10/2018
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 555
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7.2.0.3 SQL-Server, 7.3.0, 7.3.1, 12.2.1, and 12.2.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to DM Others.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle supply chain products suite 7.2.0.3

oracle supply chain products suite sql-server 7.3.0

oracle supply chain products suite sql-server 12.2.1

oracle supply chain products suite sql-server 12.2.2

oracle supply chain products suite sql-server 7.3.1

oracle supply chain products suite sql-server 12.2.0

Exploits

Details: Application is vulnerable to SQL injection Impact: An attacker with access to the vulnerable pages could manipulate the queries being sent to the database, potentially enabling them to: - Extract sensitive information, including (but not limited to) authentication credentials and personal details Such information could be sold by the ...
Oracle Demantra version 1221 suffers from a remote SQL injection vulnerability ...