Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).
CVE-2014-0372 — Oracle Supply Chain Products Suite vulnerability
5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
20.5%
top 4.44%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJan 15
Latest updateMay 14
Description
Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7.2.0.3 SQL-Server, 7.3.0, 7.3.1, 12.2.1, and 12.2.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to DM Others.
CVSS vector
AV:N/AC:L/C:P/I:P/A:NExploitability: 8.0 | Impact: 4.9
Affected Packages2 packages
🔴Vulnerability Details
2GHSA▶
GHSA-mp2c-hhj2-7xjx: Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7↗2022-05-14
CVEList▶
CVE-2014-0372: Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7↗2014-01-15