Oracle E-Business (July 2013 CPU)

medium Nessus Plugin ID 70178

Synopsis

The remote host has a web application installed that is affected by multiple vulnerabilities.

Description

The version of Oracle E-Business installed on the remote host is missing the July 2013 Critical Patch Update (CPU). It is, therefore, affected by security issues in the following components :

- Oracle Landed Cost Management
- Oracle Application Object Library
- Oracle Applications Technology Stack
- Oracle iSupplier Portal
- Oracle Applications Technology Stack

Solution

Apply the appropriate patch according to the July 2013 Oracle Critical Patch Update advisory.

See Also

http://www.nessus.org/u?e1cbd417

Plugin Details

Severity: Medium

ID: 70178

File Name: oracle_e-business_cpu_jul_2013.nasl

Version: 1.11

Type: remote

Family: Misc.

Published: 9/27/2013

Updated: 4/11/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.7

CVSS v2

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 4.1

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:N

CVSS Score Source: CVE-2013-3756

Vulnerability Information

CPE: cpe:/a:oracle:e-business_suite

Required KB Items: Oracle/E-Business/Version, Oracle/E-Business/patches/installed

Exploit Ease: No known exploits are available

Patch Publication Date: 7/16/2013

Vulnerability Publication Date: 7/16/2013

Reference Information

CVE: CVE-2013-3747, CVE-2013-3749, CVE-2013-3756, CVE-2013-3767, CVE-2013-3777, CVE-2013-3778, CVE-2013-3788

BID: 61242, 61246, 61265, 61268, 61276, 61277, 61278