CVE-2023-22124 is a medium-severity vulnerability affecting Oracle Banking Trade Finance versions 14.5-14.7. It allows a low-privileged attacker with network access to achieve unauthorized data modification or partial data disclosure within the application. Successful exploitation requires user interaction and can impact additional products beyond Oracle Banking Trade Finance. There is currently no public exploit code available, and the vulnerability has not seen active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 14.5, <= 14.7CPE matchmatch criteria | cpe:2.3:a:oracle:banking_trade_finance:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.