We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-21442



Assigneroracle
Reserved2021-11-15
Published2022-04-19
Updated2024-09-24

Description

Vulnerability in Oracle GoldenGate (component: OGG Core Library). The supported version that is affected is Prior to 23.1. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle GoldenGate executes to compromise Oracle GoldenGate. While the vulnerability is in Oracle GoldenGate, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle GoldenGate. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).



HIGH: 8.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Product status

Any version before 23.1
affected

References

https://www.oracle.com/security-alerts/cpuapr2022.html

cve.org CVE-2022-21442

nvd.nist.gov CVE-2022-21442

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-21442
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.