4.3
CVSSv2

CVE-2014-0379

Published: 15/01/2014 Updated: 08/11/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7.2.0.3 SQL-Server, 7.3.0.x, 7.3.1.x, 12.2.0, 12.2.1, and 12.2.2 allows remote malicious users to affect integrity via unknown vectors related to DM Others.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle supply chain products suite 7.2.0.3

oracle supply chain products suite sql-server 7.3.0

oracle supply chain products suite sql-server 12.2.1

oracle supply chain products suite sql-server 12.2.2

oracle supply chain products suite sql-server 7.3.1

oracle supply chain products suite sql-server 12.2.0

Exploits

Details: The TaskSender area is vulnerable to a stored cross-site scripting vulnerability Impact: An attacker could exploit this flaw to get active HTML or script code executed in an authenticated user’s browser Cross-site Scripting may be used to perform attacks such as session hijacking by invoking the user’s browser to send information s ...
Oracle Demantra version 1221 suffers from a stored cross site scripting vulnerability ...