CVE-2019-11358 | Oracle Insurance Data Foundation 8.0.4/8.0.5/8.0.6/8.0.7 Apache Commons FileUpload cross site scripting (Nessus ID 208606 / ID 176919)
A vulnerability classified as critical was found in Oracle Insurance Data Foundation 8.0.4/8.0.5/8.0.6/8.0.7. This vulnerability affects unknown code of the component Apache Commons FileUpload. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2019-11358. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.