VDB
OSA-38599941
OSA-38599941
PUBLISHED
CVSS 4.199999809265137 MEDIUM
Vulnerability in Oracle Graph Server and Client (component: Packaging (Apache Tomcat)). Supported versions that are affected are 24.4.4 and 25.4.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Graph Server and Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Graph Server and Client. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H).
Risk Scores
CVSS 3.1
4.199999809265137
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:N/I:N/A:H
Exploit Intelligence
- JsonHelperTest.java (github-poc)
Timeline
- Jan 20, 2026 CVE Published