CVE-2019-11358 | Oracle Policy Automation for Mobile Devices up to 12.2.15 jQuery cross site scripting (EDB-52141 / Nessus ID 208606)
A vulnerability was found in Oracle Policy Automation for Mobile Devices up to 12.2.15. It has been classified as critical. This affects an unknown part of the component jQuery. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2019-11358. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.