Vulnerability in Oracle Hospitality Simphony First Edition Component
CVE-2017-10001
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 8 August 2017
What is CVE-2017-10001?
An exploitable flaw exists in Oracle Hospitality Simphony First Edition within the Core component, specifically in version 1.7.1. This vulnerability permits a low-privileged attacker with network access via HTTP to compromise the system, requiring human interaction from a third party to successfully execute an attack. When exploited, this vulnerability can lead to unauthorized access to critical data, allowing the attacker to manipulate data through insert, update, or delete operations. It also opens up risks for denial-of-service conditions, including crashing the application. Proper security measures must be taken to safeguard against potential exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Hospitality Simphony First Edition 1.7.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved