First published: Tue Oct 17 2023(Updated: )
Vulnerability in the Hospitality OPERA 5 Property Services product of Oracle Hospitality Applications (component: Opera). The supported version that is affected is 5.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Hospitality OPERA 5 Property Services. Successful attacks of this vulnerability can result in takeover of Hospitality OPERA 5 Property Services. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Hospitality OPERA 5 Property Services | =5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-22085 is a vulnerability in the Hospitality OPERA 5 Property Services product of Oracle Hospitality Applications.
The severity of CVE-2023-22085 is high with a severity rating of 8.8.
CVE-2023-22085 affects Oracle Hospitality OPERA 5 Property Services version 5.6.
CVE-2023-22085 allows a low privileged attacker with network access via HTTP to compromise Hospitality OPERA 5 Property Services.
To fix CVE-2023-22085, it is recommended to apply the necessary patches provided by Oracle.