CVE-2020-11022 | Oracle JD Edwards EnterpriseOne Tools up to 9.2.4.x Web Runtime cross site scripting (EDB-49766 / Nessus ID 209233)
A vulnerability, which was classified as critical, was found in Oracle JD Edwards EnterpriseOne Tools up to 9.2.4.x. This affects an unknown part of the component Web Runtime. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2020-11022. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.