Vulnerability in Oracle Berkeley DB Data Store Component
CVE-2017-3612
7HIGH
Summary
This vulnerability resides in the Data Store component of Oracle Berkeley DB, specifically affecting versions prior to 6.2.32. An unauthenticated attacker with access to the infrastructure where Data Store operates can potentially exploit this flaw, which requires interaction from a third party user. Successful exploitation may lead to a complete takeover of the Data Store, compromising confidentiality, integrity, and availability of the stored data.
Affected Version(s)
Oracle Berkeley DB < 6.2.32
References
CVSS V3.1
Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved