Oracle Concurrent Processing
cpe:2.3:a:oracle:concurrent_processing:*:*:*:*:*:*:*
- >= 12.2.3, <= 12.2.14
This vulnerability is being actively exploited in the wild.
A remote code execution vulnerability has been identified in the Oracle Concurrent Processing component of Oracle E-Business Suite, specifically in versions 12.2.3 through 12.2.14. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle Concurrent Processing. Successful exploitation can lead to a complete takeover of the Oracle Concurrent Processing environment.
Exploitation of this vulnerability allows for remote code execution on the affected system.
Oracle recommends that customers apply the updates provided in the Oracle E-Business Suite Patch Availability Document as soon as possible. The October 2023 Critical Patch Update is a prerequisite for applying these updates.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.