CVE-2020-11979 | Oracle Retail Xstore Point of Service 15.0.4/16.0.6/17.0.4/18.0.3/19.0.2 Xenvironment temp file (EUVD-2021-0549 / WID-SEC-2024-0794)
A vulnerability was found in Oracle Retail Xstore Point of Service 15.0.4/16.0.6/17.0.4/18.0.3/19.0.2. It has been rated as critical. This vulnerability affects unknown code of the component Xenvironment. Performing a manipulation results in creation of temporary file in directory with insecure permissions.
This vulnerability is cataloged as CVE-2020-11979. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.