CVE-2022-23305 | Oracle Business Process Management Suite 12.2.1.3.0/12.2.1.4.0 Runtime Engine sql injection (Nessus ID 211908)
A vulnerability was found in Oracle Business Process Management Suite 12.2.1.3.0/12.2.1.4.0. It has been classified as very critical. This affects an unknown part of the component Runtime Engine. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2022-23305. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.