#VU62556 Improper input validation in JD Edwards EnterpriseOne Tools - CVE-2022-21464
Published: April 25, 2022
JD Edwards EnterpriseOne Tools
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to access sensitive information or perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Business Logic Infra SEC component in JD Edwards EnterpriseOne Tools. A remote non-authenticated attacker can exploit this vulnerability to access sensitive information or perform a denial of service (DoS) attack.