Vulnerability in Data Store Component of Oracle Berkeley DB
CVE-2019-2760

7HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
23 July 2019

Summary

A vulnerability exists within the Data Store component of Oracle Berkeley DB, allowing unauthorized access to the system by an unauthenticated attacker. This flaw can be exploited if the attacker can gain access to the infrastructure where Data Store operates, and it requires human interaction from a third party to trigger a successful attack. If exploited, this vulnerability could enable an attacker to take complete control over the Data Store, posing significant risks to data confidentiality, integrity, and availability.

Affected Version(s)

Oracle Berkeley DB 12.1.6.1.23

Oracle Berkeley DB 12.1.6.1.26

Oracle Berkeley DB 12.1.6.1.29

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.