Management Console Vulnerability in Oracle Cloud Infrastructure Storage Gateway
CVE-2021-2319
9.1CRITICAL
What is CVE-2021-2319?
A vulnerability exists in the Management Console component of the Oracle Cloud Infrastructure Storage Gateway, which can be exploited by attackers with high privileges and network access. This flaw allows unauthorized manipulation, potentially leading to the takeover of the Oracle Cloud Infrastructure Storage Gateway. Attackers utilizing this vulnerability could compromise not just the storage gateway, but also other interconnected products. To remediate this issue, it is crucial to update the Oracle Cloud Infrastructure Storage Gateway to version 1.4 or later. For additional guidance, refer to Oracle's security alert.
Affected Version(s)
Cloud Infrastructure < 1.4