Improper input validation in JD Edwards EnterpriseOne Tools - CVE-2024-20937
Published: January 18, 2024
JD Edwards EnterpriseOne Tools
Oracle
Description
The vulnerability allows a remote authenticated user to gain access to sensitive information.
The vulnerability exists due to improper input validation within the Monitoring and Diagnostics SEC component in JD Edwards EnterpriseOne Tools. A remote authenticated user can exploit this vulnerability to gain access to sensitive information.