JD Edwards EnterpriseOne Tools Critical Patch Update Pre-installation Note
do you can explain me more about:
High Level Summary
1_
CVE-2012-1678: Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Enterprise Infrastructure SEC(JDENET)). The supported version that is affected is 8.98. This vulnerability requires intruder to authenticate using valid E1 user and password and then retrieve the encrypted network data using a network sniffer which is not strongly encrypted.
CVSS Base Score 3.5 (Availability impacts).?????
2_the encrypted network data using a network sniffer which is not strongly encrypted.?????
3_SEC(JDENET)). ?????
thanks