CVE-2020-17530 | Oracle Business Intelligence Enterprise Edition 12.2.1.3.0/12.2.1.4.0 Installation expression language injection
A vulnerability has been found in Oracle Business Intelligence Enterprise Edition 12.2.1.3.0/12.2.1.4.0 and classified as very critical. This vulnerability affects unknown code of the component Installation. The manipulation leads to improper neutralization of special elements used in an expression language statement.
This vulnerability was named CVE-2020-17530. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.