Oracle Database Sharding Vulnerability Exposes Critical Data
CVE-2022-21603
7.2HIGH
Summary
A vulnerability exists in the Sharding component of Oracle Database Server, specifically impacting versions 19c and 21c. This security flaw allows an attacker with high privileges and Local Logon access to exploit the system. Successful exploitation could lead to unauthorized takeover of the Oracle Database Sharding feature, posing significant risks to data confidentiality, integrity, and availability. Organizations using affected versions should take immediate action to secure their database environments.
Affected Version(s)
Database - Enterprise Edition 19c
Database - Enterprise Edition 21c
References
CVSS V3.1
Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved