Vulnerability in the Oracle Notification Server component of Oracle Database Server. Supported versions that are affected are 19.3-19.20 and 21.3-21.11. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Notification Server executes to compromise Oracle Notification Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Notification Server accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.oracle.com/security-alerts/cpuoct2023.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: oracle
Published: 2023-10-17T21:02:52.961Z
Updated: 2024-09-13T16:35:41.281Z
Reserved: 2022-12-17T19:26:00.758Z
Link: CVE-2023-22073
Vulnrichment
Updated: 2024-08-02T09:59:28.891Z
NVD
Status : Modified
Published: 2023-10-17T22:15:12.987
Modified: 2024-11-21T07:44:13.387
Link: CVE-2023-22073
Redhat
No data.