CVE-2021-2110

5 documents5 sources
Severity
5.0MEDIUM
EPSS
0.2%
top 58.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 20
Latest updateMay 24

Description

Vulnerability in the Oracle Argus Safety product of Oracle Health Sciences Applications (component: Letters). The supported version that is affected is 8.2.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Argus Safety. While the vulnerability is in Oracle Argus Safety, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Argus

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:NExploitability: 3.1 | Impact: 1.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-9p74-pqx9-3mrw: Vulnerability in the Oracle Argus Safety product of Oracle Health Sciences Applications (component: Letters)2022-05-24
CVEList
CVE-2021-2110: Vulnerability in the Oracle Argus Safety product of Oracle Health Sciences Applications (component: Letters)2021-01-20

📋Vendor Advisories

2
Microsoft
Microsoft Office app Remote Code Execution Vulnerability2021-12-14
Oracle
Oracle Oracle Health Sciences Applications Risk Matrix: Letters — CVE-2021-21102021-01-15
CVE-2021-2110 (MEDIUM CVSS 5) | Vulnerability in the Oracle Argus S | cvebase.io