CVE-2019-11358 | Oracle Hyperion Planning 11.1.2.4/11.2.6.0 jQuery cross site scripting (EDB-52141 / Nessus ID 208606)
A vulnerability has been found in Oracle Hyperion Planning 11.1.2.4/11.2.6.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component jQuery. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2019-11358. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.