CVE-2019-2616
CISA 기관 조치 기한: 2022-04-15
Oracle BI Publisher (Formerly XML Publisher)
Qualys 위협 인텔 · 심각도 4/5 · QID 730512 · CGI
공개 익스플로잇
쉬운 악용
권한상승
인증 불필요
CISA KEV
Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source reporting attributes this vulnerability to allowing for authentication bypass.
KEV 필수 조치: Apply updates per vendor instructions.
공개 익스플로잇 / PoC
- Exploit-DB: EDB-46729 ↗