VYPR
Unrated severityNVD Advisory· Published Jul 19, 2022· Updated Sep 24, 2024

CVE-2022-21551

CVE-2022-21551

Description

Vulnerability in Oracle GoldenGate (component: Oracle GoldenGate). The supported version that is affected is 21c: prior to 21.7.0.0.0; 19c: prior to 19.1.0.0.220719. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle GoldenGate. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Oracle GoldenGate. CVSS 3.1 Base Score 6.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H).

Affected products

2
  • Oracle Corporation/Goldengatellm-fuzzy2 versions
    21c < 21.7.0.0.0; 19c < 19.1.0.0.220719+ 1 more
    • (no CPE)range: 21c < 21.7.0.0.0; 19c < 19.1.0.0.220719
    • (no CPE)range: 21c: prior to 21.7.0.0.0; 19c: prior to 19.1.0.0.220719

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.