CVE-2022-21603 is a high-severity vulnerability affecting the Sharding component of Oracle Database Server versions 19c and 21c. This easily exploitable flaw allows a high-privileged attacker with local logon and network access to fully compromise the Oracle Database - Sharding, leading to complete loss of confidentiality, integrity, and availability. While rated with a CVSS score of 7.2, there is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed on the CISA KEV catalog. Furthermore, there is minimal community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
19cCPE matchmatch criteria | cpe:2.3:a:oracle:database_-_sharding:19c:*:*:*:*:*:*:* | ||
21cCPE matchmatch criteria | cpe:2.3:a:oracle:database_-_sharding:21c:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.