CVE-2020-14716 is an easily exploitable vulnerability in the CRM User Management Framework component of Oracle E-Business Suite's Oracle Common Applications, affecting versions 12.1.3 and 12.2.3-12.2.9. It has a CVSS 3.1 Base Score of 4.7 (Medium) due to its network attack vector and low attack complexity, but requires user interaction. Successful exploitation can lead to unauthorized modification of Oracle Common Applications data, potentially impacting additional products. There is currently no public exploit code available, and it shows minimal community discussion or media coverage, indicating low active exploitation or public awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.2.3, <= 12.2.9CPE matchmatch criteria | cpe:2.3:a:oracle:common_applications:*:*:*:*:*:*:*:* | ||
12.1.3CPE matchmatch criteria | cpe:2.3:a:oracle:common_applications:12.1.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.