CVE-2020-11022 | Oracle Financial Services Revenue Management and Billing Analytics jQuery cross site scripting (EDB-49766 / Nessus ID 209233)
A vulnerability labeled as critical has been found in Oracle Financial Services Revenue Management and Billing Analytics 2.7.0/2.8.0. Affected by this issue is some unknown functionality of the component jQuery. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2020-11022. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The affected component should be upgraded.