Oracle Business Intelligence Path Traversal

By
Anandhu K A
Published on
01 Oct 2021
Vulnerability

Oracle Fusion Middleware has a vulnerability in the BI Publisher component. 11.1.1.9.0, 12.2.1.3.0, and 12.2.1.4.0 are the supported versions that are affected.A high-privileged attacker with network access through HTTP can easily compromise BI Publisher thanks to an easily exploitable vulnerability.Unauthorized access to important data or entire access to all BI Publisher available data can arise from successful attacks on this vulnerability. Unauthorized access to important data or entire access to all BI Publisher accessible data is possible if this vulnerability is exploited successfully.

Mitigation / Precaution

We recommend you to apply the vendor provided patch.

Automated human-like penetration testing for your web apps & APIs
Teams using Beagle Security are set up in minutes, embrace release-based CI/CD security testing and save up to 65% with timely remediation of vulnerabilities. Sign up for a free account to see what it can do for you.

Written by
Anandhu K A
Anandhu K A
Lead Engineer
Find website security issues in a flash
Improve your website's security posture with proactive vulnerability detection.
Free website security assessment
Experience the power of automated penetration testing & contextual reporting.