Vulnerability in Oracle Hospitality Applications Property Management System
CVE-2017-10056

5.5MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
8 August 2017

Summary

A vulnerability exists in the Oracle Hospitality 9700 component of Oracle Hospitality Applications, specifically within the Property Management Systems. This issue allows a low privileged attacker with logon credentials to the environment where the Oracle Hospitality 9700 operates to exploit the system. Successful exploitation could lead to unauthorized access to sensitive information and potentially expose all accessible data in the Oracle Hospitality 9700. Mitigation steps should be considered to protect against potential exploitation.

Affected Version(s)

Hospitality 9700 4.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.