CVE-2017-10207

MEDIUM

Oracle Hospitality Simphony - Denial of Service

Title source: rule

Description

Vulnerability in the Oracle Hospitality Simphony component of Oracle Hospitality Applications (subcomponent: Utilities). The supported version that is affected is 2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality Simphony. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Hospitality Simphony. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).

Scores

CVSS v3 5.3
EPSS 0.0251
EPSS Percentile 85.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Details

Status published
Products (2)
oracle/hospitality_simphony
Oracle Corporation/Hospitality Simphony < 2.9
Published Aug 08, 2017
Tracked Since Feb 18, 2026