Vulnerability in Oracle Hospitality Applications Affects Hotel Mobile Component
CVE-2017-10133

4.3MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
8 August 2017

Summary

A vulnerability has been identified within the Hospitality Hotel Mobile component of Oracle Hospitality Applications. This issue allows attackers with low privileges and network access via HTTP to compromise the system. The exploitation of this vulnerability may lead to unauthorized updates, inserts, or deletion of data that is accessible within the Hospitality Hotel Mobile application. It is essential for organizations utilizing this system to implement security measures to mitigate potential threats.

Affected Version(s)

Hospitality Hotel Mobile 1.1

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.