PT-2018-15792 · Oracle · Oracle Outside In Technology+1

Publicado

2018-04-19

·

Atualizado

2019-10-03

·

CVE-2018-2768

CVSS v3.1

7.1

Alta

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Oracle Outside In Technology version 8.5.3
Description The issue affects the Oracle Outside In Technology component of Oracle Fusion Middleware, specifically the Outside In Filters subcomponent. It allows an unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology, requiring human interaction from a person other than the attacker. Successful attacks can result in unauthorized access to critical data, complete access to all Oracle Outside In Technology accessible data, and the ability to cause a partial denial of service of Oracle Outside In Technology.
Recommendations For version 8.5.3, update to a version that includes a fix for this issue, as the current version is easily exploitable and can lead to significant data access and service disruption.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2018-2768

Produtos afetados

Oracle Fusion Middleware
Oracle Outside In Technology