CVE-2021-2446: Critical severity tarantella secure global desktop vulnerability
Vulnerability in the Oracle Secure Global Desktop product of Oracle Virtualization (component: Client). The supported version that is affected is 5.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Secure Global Desktop. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Secure Global Desktop, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Secure Global Desktop. CVSS 3.1 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Oracle Secure Global Desktop vulnerability?
The vulnerability ID for this Oracle Secure Global Desktop vulnerability is CVE-2021-2446.
What is the affected version of Oracle Secure Global Desktop?
The affected version of Oracle Secure Global Desktop is 5.6.
How severe is CVE-2021-2446?
CVE-2021-2446 has a severity rating of 9.6 (Critical).
What is the component of Oracle Virtualization affected by CVE-2021-2446?
The component of Oracle Virtualization affected by CVE-2021-2446 is Client.
Is CVE-2021-2446 easily exploitable?
Yes, CVE-2021-2446 is easily exploitable.