First published: Thu Oct 19 2017(Updated: )
An unspecified vulnerability in Oracle Database Server related to the Java VM component could allow an authenticated attacker to take control of the system.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | =11.2.0.4 | |
Oracle Database | =12.1.0.2 | |
Oracle Database | =12.2.0.1 | |
IBM ISIM VA | <=7.0.2 | |
IBM ISIM VA | <=7.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10190 is an unspecified vulnerability in Oracle Database Server related to the Java VM component.
The affected versions of Oracle Database Server are 11.2.0.4, 12.1.0.2, and 12.2.0.1.
An attacker needs the Create Session and Create Procedure privileges, along with logon to the infrastructure where Java VM is enabled.
CVE-2017-10190 has a severity rating of 8.2 (high).
You can find more information about CVE-2017-10190 on the following references: [1] [2] [3].