Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (component: Simphony Enterprise Server). Supported versions that are affected are 19.1.0-19.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality Simphony. Successful attacks of this vulnerability can result in takeover of Oracle Hospitality Simphony. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.oracle.com/security-alerts/cpuapr2024.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: oracle
Published: 2024-04-16T21:26:02.932Z
Updated: 2024-08-22T00:30:35.292Z
Reserved: 2023-12-07T22:28:10.649Z
Link: CVE-2024-21014
Vulnrichment
Updated: 2024-08-01T22:13:41.452Z
NVD
Status : Awaiting Analysis
Published: 2024-04-16T22:15:15.967
Modified: 2024-11-21T08:53:37.270
Link: CVE-2024-21014
Redhat
No data.