CNC, DB and Operating System - JDE1 (MOSC)

MOSC Banner

JD Edwards EnterpriseOne Tools Critical Patch Update Pre-installation Note

edited Jan 14, 2014 2:24AM in CNC, DB and Operating System - JDE1 (MOSC) 2 commentsAnswered
Guys,

do you can explain me more about:

High Level Summary

1_
CVE-2012-1678: Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Enterprise Infrastructure SEC(JDENET)). The supported version that is affected is 8.98. This vulnerability requires intruder to authenticate using valid E1 user and password and then retrieve the encrypted network data using a network sniffer which is not strongly encrypted.
CVSS Base Score 3.5 (Availability impacts).?????

2_the encrypted network data using a network sniffer which is not strongly encrypted.?????

3_SEC(JDENET)). ?????

thanks

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center