Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
BID:51464
Info
Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
| Bugtraq ID: | 51464 |
| Class: | Unknown |
| CVE: |
CVE-2011-3514 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2012 12:00AM |
| Updated: | Feb 24 2012 08:20AM |
| Credit: | Oracle |
| Vulnerable: |
Oracle JDEdwards 8.98 |
| Not Vulnerable: | |
Discussion
Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
Oracle JDEdwards is prone to a remote security bypass vulnerability in JD Edwards EnterpriseOne Tools.
The vulnerability can be exploited over the 'JDENET' protocol. The 'Enterprise Infrastructure SEC (JDENET)' sub component is affected.
Successfully exploiting this issue will allow attackers to modify configuration file, bypass security restrictions and perform unauthorized actions.
This vulnerability affects the following supported versions:
8.98
Oracle JDEdwards is prone to a remote security bypass vulnerability in JD Edwards EnterpriseOne Tools.
The vulnerability can be exploited over the 'JDENET' protocol. The 'Enterprise Infrastructure SEC (JDENET)' sub component is affected.
Successfully exploiting this issue will allow attackers to modify configuration file, bypass security restrictions and perform unauthorized actions.
This vulnerability affects the following supported versions:
8.98
Exploit / POC
Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.
References
Oracle JDEdwards CVE-2011-3514 Remote Security Bypass Vulnerability
References:
References: