CVE-2022-21603: High severity oracle rdbms sharding vulnerability
Vulnerability in the Oracle Database - Sharding component of Oracle Database Server. Supported versions that are affected are 19c and 21c. Easily exploitable vulnerability allows high privileged attacker having Local Logon privilege with network access via Local Logon to compromise Oracle Database - Sharding. Successful attacks of this vulnerability can result in takeover of Oracle Database - Sharding. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21603?
CVE-2022-21603 is classified as a high severity vulnerability due to its potential to allow a privileged attacker to compromise the Oracle Database.
How do I fix CVE-2022-21603?
To mitigate CVE-2022-21603, apply the latest patch from Oracle for affected versions 19c and 21c.
What versions of Oracle Database are affected by CVE-2022-21603?
CVE-2022-21603 affects Oracle Database versions 19c and 21c that include the Sharding component.
Who can exploit CVE-2022-21603?
CVE-2022-21603 can be exploited by a high privileged attacker who has Local Logon privileges with network access.
What impact does CVE-2022-21603 have?
CVE-2022-21603 can lead to unauthorized access and potential compromise of the Oracle Database by an attacker.