Looking for the vulnerability index of Invicti's legacy products?
Oracle Business Intelligence Convert XXE CVE-2019-2767 - Vulnerability Database

Oracle Business Intelligence Convert XXE CVE-2019-2767

Description

Convert servlet in Oracle Business Intelligence has an XXE vulnerability. This vulnerability allows an attacker to send crafted requests to a web application for extraction of secrets from the file system, server-side request forgery or denial-of-service attacks.

Remediation

Upgrade to the latest version of Oracle Business Intelligence. This issue was fixed in Oracle Critical Patch Update - July 2019

Related Vulnerabilities