Unauthenticated Access Vulnerability in Oracle Berkeley DB Data Store
CVE-2017-3614

7HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
24 April 2017

Summary

The vulnerability in the Data Store component of Oracle Berkeley DB allows an unauthenticated attacker, who has access to the infrastructure where Data Store operates, to potentially compromise the system. While successful exploitation requires assistance from a third party, the implications of such a breach can lead to significant takeover of Data Store functionality, impacting the confidentiality, integrity, and availability of the stored data.

Affected Version(s)

Oracle Berkeley DB < 6.2.32

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.