CVE-2018-3001: Medium severity oracle hospitality cruise shipboard property management system vulnerability
Vulnerability in the Oracle Hospitality Cruise Shipboard Property Management System component of Oracle Hospitality Applications (subcomponent: SPMS Suite). The supported version that is affected is 8.x. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hospitality Cruise Shipboard Property Management System executes to compromise Oracle Hospitality Cruise Shipboard Property Management System. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality Cruise Shipboard Property Management System accessible data. CVSS 3.0 Base Score 6.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-3001.
What is the affected component of this vulnerability?
The affected component of this vulnerability is the Oracle Hospitality Cruise Shipboard Property Management System component.
What is the affected version of the Oracle Hospitality Cruise Shipboard Property Management System?
The affected version of the Oracle Hospitality Cruise Shipboard Property Management System is 8.x.
Is the vulnerability easily exploitable?
Yes, the vulnerability is easily exploitable.
What is the severity rating for this vulnerability?
The severity rating for this vulnerability is medium (6.2).