Microsoft Certification Exam Dumps

Pass4sureusa is the best source to prepare Microsoft exams. You only need to prepare our pass4sure Microsoft exam questions to pass your exams. We are providing 100% exam passing guarantee. Just get our pass4sure Microsoft dumps and pass exam.

Cisco Certification Exam Dumps

Pass4sureusa is the best source to prepare Cisco exams. You only need to prepare our pass4sure Cisco exam questions to pass your exams. We are providing 100% exam passing guarantee. Just get our pass4sure Cisco dumps and pass exam.

Comptia Certification Exam Dumps

Pass4sureusa is the best source to prepare CompTIA exams. You only need to prepare our pass4sure CompTIA exam questions to pass your exams. We are providing 100% exam passing guarantee. Just get our pass4sure CompTIA dumps and pass exam.

Amazon Certification Exam Dumps

Pass4sureusa is the best source to prepare Amazon exams. You only need to prepare our pass4sure Amazon exam questions to pass your exams. We are providing 100% exam passing guarantee. Just get our pass4sure Amazon dumps and pass exam.

Oracle Certification Exam Dumps

Pass4sureusa is the best source to prepare Oracle exams. You only need to prepare our pass4sure Oracle exam questions to pass your exams. We are providing 100% exam passing guarantee. Just get our pass4sure Oracle dumps and pass exam.

Thursday, 20 July 2017

Oracle Patches 308 Bugs, Including High-risk Arbitrary Download Flaw In E-Business Suite

The security fixes address multiple vulnerabilities in many different product categories, including: Database, Fusion Middleware, Enterprise Manager, E-Business suite, Office Supply Chain, PeopleSoft, Siebel, Oracle Commerce, iLearning, Fusion Applications, Oracle Communications, Oracle Enterprise, Policy Automation, Primavera, Java SE, Oracle and Sun Systems Products Suite, Linux and Virtualization, MySQL Product Suite, Support Tools, and solutions for the finances services, retail, and hospitality industries.

One of the addressed bugs was a high-risk arbitrary documents download vulnerability in the E-Business Suite. Officially designated CVE-2017-10244, the flaw was discovered by Juan Perez-Etchegoyen, CTO of Onapsis. According to an Onapsis press release, the flaw, if exploited could attackers with network access to the EBS system to retrieve all of its stored in its database, "resulting in a potentially severe information and data loss situation as well as costly compliance violations..."

E-Business Suite versions 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6 are vulnerable to the flaw, reported Onapsis.

"Any number of critical documents could be stored in the system including invoices, purchase orders, HR information and design documents to start," said Perez-Etchegoyen, in the release. "While we would never scan to identify vulnerable systems, using free search engines we were able to identify that upwards of 1,000 EBS systems are currently connected to the internet, more than half of these being in the United States. These organizations need to patch immediately to mitigate this risk in their organization."