Unauthenticated Access Vulnerability in Oracle Hospitality Simphony
CVE-2017-10343

6.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
19 October 2017

What is CVE-2017-10343?

An unauthenticated access vulnerability exists in the Import/Export feature of Oracle Hospitality Simphony, affecting versions 2.8 and 2.9. This vulnerability can be exploited by attackers with network access via HTTP, requiring human interaction from a third party to successfully execute the attack. Once exploited, attackers may gain unauthorized access to sensitive data within the Oracle Hospitality Simphony system, potentially leading to critical information compromise.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Hospitality Simphony 2.8

Hospitality Simphony 2.9

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.