Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Base). Supported versions that are affected are 4.2.0 and 4.2.1. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hospitality Guest Access executes to compromise Oracle Hospitality Guest Access. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality Guest Access accessible data. CVSS 3.0 Base Score 6.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
References
Link | Resource |
---|---|
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/102579 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2018-01-18 02:29
Updated : 2024-02-04 19:46
NVD link : CVE-2018-2606
Mitre link : CVE-2018-2606
CVE.ORG link : CVE-2018-2606
JSON object : View
Products Affected
oracle
- hospitality_guest_access
CWE