Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-21894
HistoryJan 18, 2023 - 12:15 a.m.

Design/Logic Flaw

2023-01-1800:15:00
PRIOn knowledge base
www.prio-n.com
2
oracle fusion middleware
nextgen installer issues
security
logic flaw
infrastructure
exploitable
takeover
cvss 3.1
confidentiality
integrity
availability.

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.8%

Vulnerability in the Oracle Global Lifecycle Management NextGen OUI Framework product of Oracle Fusion Middleware (component: NextGen Installer issues). Supported versions that are affected are Prior to 13.9.4.2.11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Global Lifecycle Management NextGen OUI Framework executes to compromise Oracle Global Lifecycle Management NextGen OUI Framework. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Oracle Global Lifecycle Management NextGen OUI Framework. CVSS 3.1 Base Score 7.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H).

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.8%

Related for PRION:CVE-2023-21894