CVE-2014-2424 is an unspecified integrity vulnerability within the Oracle Event Processing component of Oracle Fusion Middleware 11.1.1.7.0, specifically impacting the CEP system. This vulnerability has a CVSS score of 4.0, indicating it can be exploited by remote authenticated users with low attack complexity to modify data, but without impacting confidentiality or availability. While not listed on the KEV catalog, a Metasploit module exists for an arbitrary file upload exploit, and its high EPSS and FAUCET Risk Scores suggest significant exploitability despite a lack of public discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.1.1.7.0CPE matchmatch criteria | cpe:2.3:a:oracle:fusion_middleware:11.1.1.7.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:S/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.