Oracle Financial Services Behavior Detection Platform Web UI Vulnerability Allowing Unauthorized Data Access and Modification

Vulnerability

A vulnerability exists in the Oracle Financial Services Behavior Detection Platform, specifically in the Web UI component, affecting versions 8.0.8.1, 8.1.2.7, and 8.1.2.8. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise the Behavior Detection Platform. Exploitation of this vulnerability requires human interaction from a third party. While the vulnerability is contained within the Behavior Detection Platform, successful attacks could significantly impact other Oracle Financial Services applications. The vulnerability allows for unauthorized read access to certain accessible data, as well as unauthorized update, insert, or delete access to some data within the Behavior Detection Platform.

Impact

Exploitation of this vulnerability could lead to unauthorized access to read, modify, insert, or delete data within the Oracle Financial Services Behavior Detection Platform.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
5.0
exploitability
6.0
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.