Oracle.E-Business.Suite.Arbitrary.Node.Deletion

description-logoDescription

Oracle E-Business Suite has an Arbitrary Node Deletion vulnerability. A remote attacker could delete any existing Document Management node on vulnerable installations of Oracle E-Business Suite by sending a specially crafted HTTP request.

affected-products-logoAffected Products

Oracle E-Business Suite.

Impact logoImpact

Data deletion.

recomended-action-logoRecommended Actions

Apply patch, available from the Web site.
http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

References

ZDI-07-016