First published: Thu Apr 19 2018(Updated: )
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate. The supported version that is affected is 12.2.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle GoldenGate. While the vulnerability is in Oracle GoldenGate, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle GoldenGate accessible data. CVSS 3.0 Base Score 8.6 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle GoldenGate | =12.2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Oracle GoldenGate vulnerability is CVE-2018-2832.
The severity level of CVE-2018-2832 is high, with a severity value of 8.6.
The Oracle GoldenGate component of Oracle GoldenGate is affected by this vulnerability.
The version of Oracle GoldenGate affected by this vulnerability is 12.2.0.1.
An unauthenticated attacker with network access via HTTP can easily exploit this vulnerability to compromise Oracle GoldenGate.