Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: On Demand Billing). Supported versions that are affected are 2.9.0.0 and 2.9.0.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Revenue Management and Billing. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Financial Services Revenue Management and Billing accessible data. CVSS 3.1 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).
History

Wed, 25 Feb 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: oracle

Published: 2021-01-20T14:50:12.000Z

Updated: 2024-09-26T18:15:19.095Z

Reserved: 2020-12-09T00:00:00.000Z

Link: CVE-2021-2113

cve-icon Vulnrichment

Updated: 2024-08-03T16:32:02.948Z

cve-icon NVD

Status : Modified

Published: 2021-01-20T15:15:53.067

Modified: 2024-11-21T06:02:24.500

Link: CVE-2021-2113

cve-icon Redhat

No data.