Oracle Common Applications Calendar 12.1.3 Remote Code Execution Vulnerability
12 Oct. 2016
Summary
Oracle Common Applications Calendar is prone to a remote code-execution vulnerability.This allows a remote attacker to exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts may result in a denial-of-service condition.
Vulnerable Systems:
* Oracle Common Applications Calendar 12.1.1
* Oracle Common Applications Calendar 12.1.2
* Oracle Common Applications Calendar 12.1.3
* Oracle Common Applications Calendar 12.2.3
* Oracle Common Applications Calendar 12.2.4
* Oracle Common Applications Calendar 12.2.5
vulnerability in the Oracle Marketing component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Marketing activity collateral.