#VU55161 Improper input validation in Oracle Commerce Guided Search - CVE-2021-2346
Published: July 21, 2021
Oracle Commerce Guided Search
Oracle
Description
The vulnerability allows a remote authenticated user to read and manipulate data.
The vulnerability exists due to improper input validation within the Tools and Frameworks component in Oracle Commerce Guided Search / Oracle Commerce Experience Manager. A remote authenticated user can exploit this vulnerability to read and manipulate data.