#VU27250 Improper input validation in Oracle Knowledge - CVE-2015-0254
Published: April 23, 2020
Oracle Knowledge
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
The vulnerability exists due to improper input validation within the Information Manager Console (Apache Standard Taglibs) component in Oracle Knowledge. A remote non-authenticated attacker can exploit this vulnerability to read and manipulate data.