Description
Oracle EBS iHelp component allows remote attackers to interact with internal network resources via Server Side Request Forgery (SSRF).
Remediation
Upgrade to the latest version of Oracle E-Business Suite
References
Related Vulnerabilities
Keycloak request_uri SSRF (CVE-2020-10770)
SAML Consumer Service XML entity injection (XXE)
Liferay TunnelServlet Deserialization Remote Code Execution
Oracle Reports Services RWServlet environment variables disclosure
WordPress Plugin Blog2Social:Social Media Auto Post & Scheduler Multiple Vulnerabilities (6.9.9)