Exploitation Summary
EIP tracks 1 public exploit for CVE-2014-0379. PoCs published by Portcullis.
AI-analyzed exploit summary This exploit demonstrates a stored XSS vulnerability in the TaskSender area of the target application. The PoC injects malicious JavaScript via the 'url' parameter, which executes when a user interacts with the crafted link.
Description
Unspecified vulnerability in the Oracle Demantra Demand Management component in Oracle Supply Chain Products Suite 7.2.0.3 SQL-Server, 7.3.0.x, 7.3.1.x, 12.2.0, 12.2.1, and 12.2.2 allows remote attackers to affect integrity via unknown vectors related to DM Others.
Exploits (1)
This exploit demonstrates a stored XSS vulnerability in the TaskSender area of the target application. The PoC injects malicious JavaScript via the 'url' parameter, which executes when a user interacts with the crafted link.