CVE-2018-3160: High severity oracle hospitality cruise shipboard property management system vulnerability
Vulnerability in the Oracle Hospitality Cruise Shipboard Property Management System component of Oracle Hospitality Applications (subcomponent: OHC Admin, OHC Management). The supported version that is affected is 8.0. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Hospitality Cruise Shipboard Property Management System executes to compromise Oracle Hospitality Cruise Shipboard Property Management System. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Hospitality Cruise Shipboard Property Management System, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Hospitality Cruise Shipboard Property Management System. CVSS 3.0 Base Score 7.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this Oracle Hospitality Cruise Shipboard Property Management System vulnerability?
The vulnerability ID is CVE-2018-3160.
What is the affected software?
The affected software is the Oracle Hospitality Cruise Shipboard Property Management System version 8.0.
What is the severity of CVE-2018-3160?
The severity of CVE-2018-3160 is high with a CVSS score of 7.7.
How can the vulnerability be exploited?
The vulnerability can be easily exploited by a high privileged attacker with logon credentials.
How do I fix CVE-2018-3160?
To fix CVE-2018-3160, it is recommended to apply the necessary patches provided by Oracle.