Denial of Service Vulnerability in Oracle Outside In Technology by Oracle
CVE-2021-2449

7.5HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
21 July 2021

Summary

A vulnerability exists in Oracle Outside In Technology within Oracle Fusion Middleware, specifically in the Outside In Filters component. This flaw can be exploited by unauthenticated attackers with network access through HTTP, allowing them to disrupt the service. Successful exploitation can lead to system unavailability, causing the Oracle Outside In Technology to hang or experience frequent crashes. This vulnerability emphasizes the importance of securing systems that utilize Outside In Technology, particularly those that process data received over a network.

Affected Version(s)

Outside In Technology 8.5.5

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.