Oracle Hospitality RES 3700 Vulnerability in Oracle Hospitality Applications
CVE-2017-10221

5MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
8 August 2017

Summary

The vulnerability in Oracle Hospitality RES 3700 allows a low-privileged attacker with access to the network where the service runs to compromise sensitive functionalities. Although the exploitation requires human interaction, successful attacks can lead to unauthorized modifications and data access. The potential consequences include unauthorized write, insert, or delete operations on critical data, as well as limited read access to other data sets. Additionally, an attacker could induce a partial denial of service affecting the normal operation of Oracle Hospitality RES 3700, thereby disrupting services and access for legitimate users.

Affected Version(s)

Hospitality RES 3700 5.5

References

CVSS V3.1

Score:
5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.