CVE-2024-21172
published 2024-10-15CVE-2024-21172: Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are affected are…
PriorityP357critical9CVSS 3.1
AVNACHPRNUINSCCHIHAH
EPSS
0.48%
38.4th percentile
Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are affected are 5.6.19.19, 5.6.25.8 and 5.6.26.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5. While the vulnerability is in Oracle Hospitality OPERA 5, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Hospitality OPERA 5. CVSS 3.1 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | hospitality_opera_5 | — | — |
| oracle | hospitality_opera_5 | — | — |
| oracle | hospitality_opera_5 | — | — |
| oracle_corporation | oracle_hospitality_opera_5 | — | — |
| oracle_corporation | oracle_hospitality_opera_5 | — | — |
| oracle_corporation | oracle_hospitality_opera_5 | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →The vulnerable component is the Opera Servlet, accessible via HTTP. Monitor for unauthenticated HTTP requests targeting Oracle Hospitality OPERA 5 servlet endpoints on affected versions (5.6.19.19, 5.6.25.8, 5.6.26.4). ↗
- →Scope change is indicated — successful exploitation may pivot to compromise additional products beyond OPERA 5 itself. Investigate lateral movement or secondary system compromise following any OPERA 5 servlet anomaly. ↗
- ·Exploitation is rated 'Difficult' (AC:H), meaning special conditions must be met. Not all unauthenticated HTTP traffic to the servlet is malicious; focus on anomalous or repeated access patterns. ↗
- ·Only three specific versions are confirmed affected: 5.6.19.19, 5.6.25.8, and 5.6.26.4. Detection efforts should be scoped to environments running these exact versions. ↗
- ·No Red Hat products are affected; detection and patching efforts should focus solely on Oracle Hospitality OPERA 5 deployments. ↗
CVSS provenance
nvdv3.19.0CRITICALCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
vendor_oracle9.0CRITICAL
vendor_redhat9.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j4c2-c778-c3qh: Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet)
ghsa_unreviewed·2024-10-15
CVE-2024-21172 [CRITICAL] GHSA-j4c2-c778-c3qh: Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet)
Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are affected are 5.6.19.19, 5.6.25.8 and 5.6.26.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5. While the vulnerability is in Oracle Hospitality OPERA 5, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Hospitality OPERA 5. CVSS 3.1 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
Red Hat
dotnet: .NET and Visual Studio Remote Code Execution Vulnerability
vendor_redhat·2025-01-14·CVSS 7.5
CVE-2025-21172 [HIGH] CWE-641 dotnet: .NET and Visual Studio Remote Code Execution Vulnerability
dotnet: .NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
A remote code execution vulnerability was found in .NET. This flaw allows an attacker to load a specially crafted file in .NET.
Statement: This issue affects .NET Framework as shipped with all versions of RHEL. However, this flaw is not known to be exploitable under any supported scenario.
```
.NET 6.0 for RHEL-8, RHEL-9 and RHIVOS has reached its End of Life as of November 12, 2024, and is no longer supported. No fixes will be provided for this stream. For additional information about lifecycle for .NET on Red Hat Enterprise Linux, please refer to: https://access.redhat.com/support/policy/updates/net-core.
```
Mitigation: Red Hat has investigated whether a poss
Oracle
Oracle Oracle Hospitality Applications Risk Matrix: Opera Servlet — CVE-2024-21172
vendor_oracle·2024-10-15·CVSS 9.0
CVE-2024-21172 [CRITICAL] Oracle Oracle Hospitality Applications Risk Matrix: Opera Servlet — CVE-2024-21172
Oracle Oracle Hospitality Applications Risk Matrix: Opera Servlet vulnerability
CVE: CVE-2024-21172
CVSS: 9.0
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2024 (OCT 2024)
Red Hat
Oracle Hospitality Applications: From CVEorg collector
vendor_redhat·2024-10-15·CVSS 9.0
CVE-2024-21172 [CRITICAL] Oracle Hospitality Applications: From CVEorg collector
Oracle Hospitality Applications: From CVEorg collector
Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are affected are 5.6.19.19, 5.6.25.8 and 5.6.26.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5. While the vulnerability is in Oracle Hospitality OPERA 5, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Hospitality OPERA 5. CVSS 3.1 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
Statement: No Red Hat products are affected by th
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-10-15
Published