CVE-2024-21287
Oracle Agile Product Lifecycle Management (PLM) Incorrect Authorization Vulnerability
⚠ KEVEPSS 69.8%
Description
Oracle Agile Product Lifecycle Management (PLM) contains an incorrect authorization vulnerability in the Process Extension component of the Software Development Kit. Successful exploitation of this vulnerability may result in unauthenticated file disclosure.
How to fix CVE-2024-21287
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2024-21287 being exploited?
Yes — CVE-2024-21287 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.