CVE Database
/

CVE-2018-2561

Back to search

CVE-2018-2561

Published: Jan 18, 2018

Modified: Oct 3, 2024

PUBLISHED

Description

Vulnerability in the Oracle HTTP Server component of Oracle Fusion Middleware (subcomponent: Web Listener). Supported versions that are affected are 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HTTP Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle HTTP Server. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).

VendorProductVersions

Oracle Corporation

HTTP Server

affected
11.1.1.7.0
affected
11.1.1.9.0
affected
12.1.3.0.0
affected
12.2.1.2.0
affected
12.2.1.3.0

References

102565
vdb-entry
x_refsource_BID
1040210
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now