Improper input validation in JD Edwards EnterpriseOne Orchestrator - CVE-2021-2052
Published: January 22, 2021
JD Edwards EnterpriseOne Orchestrator
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The vulnerability exists due to improper input validation within the E1 IOT Orchestrator Security component in JD Edwards EnterpriseOne Orchestrator. A remote non-authenticated attacker can exploit this vulnerability to gain access to sensitive information.