Oracle Business Intelligence Path Traversal

By
Anandhu K A
Published on
01 Oct 2021
Vulnerability

Oracle Fusion Middleware has a vulnerability in the BI Publisher component. 11.1.1.9.0, 12.2.1.3.0, and 12.2.1.4.0 are the supported versions that are affected.A high-privileged attacker with network access through HTTP can easily compromise BI Publisher thanks to an easily exploitable vulnerability.Unauthorized access to important data or entire access to all BI Publisher available data can arise from successful attacks on this vulnerability. Unauthorized access to important data or entire access to all BI Publisher accessible data is possible if this vulnerability is exploited successfully.

Mitigation / Precaution

We recommend you to apply the vendor provided patch.


Written by
Anandhu K A
Anandhu K A
Lead Engineer
Experience the Beagle Security platform
Unlock one full penetration test and all Advanced plan features free for 10 days