#VU55162 Improper input validation in Oracle Commerce Guided Search - CVE-2021-2348
Published: July 21, 2021
Oracle Commerce Guided Search
Oracle
Description
The vulnerability allows a remote authenticated user to gain access to sensitive information.
The vulnerability exists due to improper input validation within the Tools and Frameworks component in Oracle Commerce Guided Search / Oracle Commerce Experience Manager. A remote authenticated user can exploit this vulnerability to gain access to sensitive information.