CISA Known Exploited Vulnerability

CVE-2022-21587 Ransomware

Oracle · E-Business Suite

Oracle E-Business Suite Unspecified Vulnerability

Date added
BOD 22-01 due date
CWE CWE-306
Ransomware Known

CISA description

Oracle E-Business Suite contains an unspecified vulnerability that allows an unauthenticated attacker with network access via HTTP to compromise Oracle Web Applications Desktop Integrator.

Required action

Apply updates per vendor instructions.