Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-54632
HistoryJul 22, 2022 - 12:00 a.m.

Oracle ZFS Storage Appliance Input Validation Error Vulnerability

2022-07-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
oracle
zfs
storage
appliance
input validation
vulnerability
oracle corporation
flash memory
petabyte-scale file storage
security flaw
highly privileged attacker
infrastructure
compromise

EPSS

0

Percentile

15.6%

Oracle ZFS Storage Appliance, an Oracle Corporation (USA) storage appliance that supports flash memory, petabyte-scale file storage with built-in Oracle Database, is vulnerable in Oracle ZFS Storage Appliance Kit version 8.8, which stems from a security flaw that allows a highly privileged attacker to log into infrastructure executing the Oracle ZFS Storage Appliance Kit to compromise it, and an attacker could exploit the vulnerability to cause the Oracle ZFS Storage Appliance Kit to be taken over.

EPSS

0

Percentile

15.6%

Related for CNVD-2022-54632