VDB

OSA-38962881

OSA-38962881 PUBLISHED CVSS 8.399999618530273 HIGH

Vulnerability in the Oracle Communications Unified Assurance product of Oracle Communications (component: Core (Apache Pulsar)). Supported versions that are affected are 6.1.1-7.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Communications Unified Assurance. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Communications Unified Assurance, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Communications Unified Assurance. CVSS 3.1 Base Score 8.4 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H).

Risk Scores

CVSS v3.1
8.399999618530273
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H

Timeline

  • Apr 24, 2026 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›