My Oracle Support Banner

Is there a posibility to analyze the files that are uploaded to a Human Task in BPM Workspace? (Doc ID 2952255.1)

Last updated on MAY 31, 2023

Applies to:

Oracle Business Process Management Suite - Version 12.2.1.4.0 and later
Information in this document applies to any platform.

Goal

On : 12.2.1.4.0 version, Orchestration Engine

Vulnerability reported in Pen test for BPM application

As of now, when the end user uploads a virus infected file to a task in BPM Workspace no error or warning is thrown by the BPM application
The ideal expected behavior is that the BPM application would scan the file for a virus and, if found, would display an error message to indicate the file is not allowed.

 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.