RULE(RULE ID:337899)

Rule General Information
Release Date: 2024-04-03
Rule Name: Oracle E-Business Suite jtfwrepo.xml Information Disclosure Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Oracle E-Business Suite is a software package that allows organizations or companies to manage critical business processes, including the more common Oracle Enterprise Resource Planning (ERP), Oracle Applications, Oracle Applications, Oracle Financials, e-Biz, and EBS (E-Business Suite). Oracle E-Business Suite has an information disclosure vulnerability, which is caused by improper configuration, resulting in the disclosure of user password hash and other information.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.