Oracle Hospitality RES 3700 Vulnerability in Oracle Hospitality Applications
CVE-2017-10221
5MEDIUM
Summary
The vulnerability in Oracle Hospitality RES 3700 allows a low-privileged attacker with access to the network where the service runs to compromise sensitive functionalities. Although the exploitation requires human interaction, successful attacks can lead to unauthorized modifications and data access. The potential consequences include unauthorized write, insert, or delete operations on critical data, as well as limited read access to other data sets. Additionally, an attacker could induce a partial denial of service affecting the normal operation of Oracle Hospitality RES 3700, thereby disrupting services and access for legitimate users.
Affected Version(s)
Hospitality RES 3700 5.5
References
CVSS V3.1
Score:
5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved