Rewterz
Rewterz Threat Advisory – CVE-2021-35940 – Apache Portable Runtime Vulnerability
August 24, 2021
Rewterz
Rewterz Threat Alert – Lazarus APT Group – Active IOCs
August 24, 2021

Rewterz Threat Advisory – CVE-2021-2189 – Oracle E-Business Suite Sales Offline Denial of Service

Severity

High

Analysis Summary

CVE-2021-2189

An infinite loop vulnerability exists in the Sales Offline component of Oracle E-Business Suite. The vulnerability is due to improper handling of requests by the authentication component of the Sales Offline.

Impact

  • Denial of Service
  • Unauthorized Access

Affected Vendors

Oracle

Affected Products

  • Oracle E-Business Suite

Remediation

Refer to Oracle Critical Patch Update Advisory for patches, upgrades, or suggested workaround information at

https://www.oracle.com/security-alerts/