CVE-2014-2399 Information

Description

Unspecified vulnerability in the Oracle Endeca Server component in Oracle Fusion Middleware 2.2.2 allows remote attackers to affect integrity via unknown vectors related to Oracle Endeca Information Discovery (Formerly Latitude) a different vulnerability than CVE-2014-2400.

Reference

http://packetstormsecurity.com/files/127222/Endeca-Latitude-2.2.2-Cross-Site-Request-Forgery.html http://seclists.org/fulldisclosure/2014/Jun/123 http://www.exploit-db.com/exploits/33897 http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html http://www.securityfocus.com/archive/1/532556/100/0/threaded http://www.securityfocus.com/bid/66864

Share on: