CVE-2017-10153

5 documents4 sources
Severity
6.3MEDIUM
EPSS
0.5%
top 33.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 19
Latest updateMay 13

Description

Vulnerability in the Oracle Communications WebRTC Session Controller component of Oracle Communications Applications (subcomponent: Security (Gson)). Supported versions that are affected are 7.0, 7.1 and 7.2. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise Oracle Communications WebRTC Session Controller. While the vulnerability is in Oracle Communications WebRTC Session Controller, attacks may significantly impact additio

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:HExploitability: 1.8 | Impact: 4.0

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-926c-cr9x-88j4: Vulnerability in the Oracle Communications WebRTC Session Controller component of Oracle Communications Applications (subcomponent: Security (Gson))2022-05-13
CVEList
CVE-2017-10153: Vulnerability in the Oracle Communications WebRTC Session Controller component of Oracle Communications Applications (subcomponent: Security (Gson))2017-10-19

💬Community

1
Bugzilla
CVE-2016-10153 kernel: introduce ceph_crypt() for in-place en/decryption2017-01-24
CVE-2017-10153 (MEDIUM CVSS 6.3) | Vulnerability in the Oracle Communi | cvebase.io