Unauthenticated Access Vulnerability in Oracle Communications Billing Product
CVE-2022-21275
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 19 January 2022
What is CVE-2022-21275?
A critical vulnerability exists in Oracle Communications Billing and Revenue Management, specifically in the Connection Manager component. This vulnerability allows an unauthenticated attacker with network access via HTTP to exploit the system. Successful exploitation can lead to a complete compromise of the billing system, potentially affecting additional services relying on it, hence posing significant risks to data confidentiality, integrity, and availability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Communications Billing and Revenue Management 12.0.0.3
Communications Billing and Revenue Management 12.0.0.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved