CVE-2018-3022: Medium severity oracle banking payments vulnerability
Vulnerability in the Oracle Banking Payments component of Oracle Financial Services Applications (subcomponent: Payments Core). Supported versions that are affected are 12.2.0, 12.3.0, 12.4.0, 12.5.0 and 14.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Banking Payments. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Banking Payments. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this Oracle Banking Payments vulnerability?
The vulnerability ID for this Oracle Banking Payments vulnerability is CVE-2018-3022.
What is the affected software for this vulnerability?
The affected software for this vulnerability is Oracle Banking Payments versions 12.2.0, 12.3.0, 12.4.0, 12.5.0, and 14.1.0.
What is the severity of CVE-2018-3022?
The severity of CVE-2018-3022 is medium, with a severity value of 6.5.
How can the vulnerability be exploited?
The vulnerability can be easily exploited by a low privileged attacker with network access.
How can I fix the CVE-2018-3022 vulnerability?
To fix the CVE-2018-3022 vulnerability, it is recommended to apply the patches and updates provided by Oracle.