CVE-2022-21503

Vulnerability in the Oracle Cloud Infrastructure product of Oracle Cloud Services. Easily exploitable vulnerability allows high privileged attacker with network access to compromise Oracle Cloud Infrastructure. Successful attacks of this vulnerability can result in unauthorized access to Oracle Cloud Infrastructure accessible data. All affected customers were notified of CVE-2022-21503 by Oracle. CVSS 3.1 Base Score 4.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N)
References
Link Resource
https://support.oracle.com Permissions Required
https://support.oracle.com Permissions Required
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:cloud_infrastructure:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:44

Type Values Removed Values Added
References () https://support.oracle.com - Permissions Required () https://support.oracle.com - Permissions Required

28 Jun 2022, 15:59

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.9
v2 : 4.0
v3 : 4.9
CWE NVD-CWE-noinfo
References (MISC) https://support.oracle.com - (MISC) https://support.oracle.com - Permissions Required
CPE cpe:2.3:a:oracle:cloud_infrastructure:-:*:*:*:*:*:*:*

17 Jun 2022, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-06-17 21:15

Updated : 2024-11-21 06:44


NVD link : CVE-2022-21503

Mitre link : CVE-2022-21503

CVE.ORG link : CVE-2022-21503


JSON object : View

Products Affected

oracle

  • cloud_infrastructure