First published: Tue Aug 08 2017(Updated: )
Vulnerability in the Oracle Retail Open Commerce Platform component of Oracle Retail Applications (subcomponent: Website). Supported versions that are affected are 5.0, 5.1, 5.2, 5.3, 6.0, 6.1, 15.0 and 15.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Retail Open Commerce Platform. While the vulnerability is in Oracle Retail Open Commerce Platform, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Retail Open Commerce Platform accessible data. CVSS 3.0 Base Score 5.8 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Retail Open Commerce Platform | =5.0 | |
Oracle Retail Open Commerce Platform | =5.1 | |
Oracle Retail Open Commerce Platform | =5.2 | |
Oracle Retail Open Commerce Platform | =5.3 | |
Oracle Retail Open Commerce Platform | =6.0 | |
Oracle Retail Open Commerce Platform | =6.1 | |
Oracle Retail Open Commerce Platform | =15.0 | |
Oracle Retail Open Commerce Platform | =15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10173 is considered a high severity vulnerability that allows unauthenticated attackers to exploit the Oracle Retail Open Commerce Platform.
To mitigate CVE-2017-10173, Oracle recommends applying the latest security patches or updates provided for the affected versions of the Oracle Retail Open Commerce Platform.
CVE-2017-10173 affects Oracle Retail Open Commerce Platform versions 5.0, 5.1, 5.2, 5.3, 6.0, 6.1, 15.0, and 15.1.
Yes, CVE-2017-10173 can be easily exploited by an unauthenticated attacker with network access.
CVE-2017-10173 is classified as an easily exploitable vulnerability impacting the website component of the Oracle Retail Open Commerce Platform.