Vulnerability in Oracle Hospitality Applications WebConnect Component
CVE-2017-10339

5.9MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
19 October 2017

Summary

A security flaw exists in the WebConnect component of Oracle Hospitality Suite8, which may be exploited by an unauthenticated attacker with network access via HTTP. This vulnerability can lead to unauthorized access to sensitive data within Oracle Hospitality Suite8, potentially allowing attackers to compromise critical information. It is essential for users of affected versions 8.10.1 and 8.10.2 to take precautions and update their systems to safeguard against potential exploits.

Affected Version(s)

Hospitality Suite8 8.10.1

Hospitality Suite8 8.10.2

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.