CVE-2022-23305 | Oracle Communications Unified Inventory Management 7.4.1/7.4.2 Logging sql injection (Nessus ID 211908)
A vulnerability labeled as very critical has been found in Oracle Communications Unified Inventory Management 7.4.1/7.4.2. The impacted element is an unknown function of the component Logging. Such manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2022-23305. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.