Vulnerability Details CVE-2017-10220
Vulnerability in the Hospitality Property Interfaces component of Oracle Hospitality Applications (subcomponent: Parser). The supported version that is affected is 8.10.x. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Hospitality Property Interfaces executes to compromise Hospitality Property Interfaces. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Hospitality Property Interfaces accessible data. CVSS 3.0 Base Score 4.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.5%
CVSS Severity
CVSS v3 Score 4.0
CVSS v2 Score 2.1
Products affected by CVE-2017-10220
-
cpe:2.3:a:oracle:hospitality_suite8_property_interfaces:8.10.0
-
cpe:2.3:a:oracle:hospitality_suite8_property_interfaces:8.10.1
-
cpe:2.3:a:oracle:hospitality_suite8_property_interfaces:8.10.2