CVE-2020-25649 | Oracle Communications Billing and Revenue Management 7.5.0.23.0/12.0.0.3.0 jackson-databind xml external entity reference
A vulnerability marked as critical has been reported in Oracle Communications Billing and Revenue Management 7.5.0.23.0/12.0.0.3.0. This vulnerability affects unknown code of the component jackson-databind. The manipulation leads to xml external entity reference.
This vulnerability is listed as CVE-2020-25649. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.