CVE-2017-10011 is a vulnerability in Oracle FLEXCUBE Private Banking versions 2.0.0, 2.0.1, 2.2.0, and 12.0.1, specifically affecting the Miscellaneous subcomponent. This low-privileged vulnerability allows an attacker with logon access to the infrastructure to gain unauthorized access to critical or all accessible data within the application. With a CVSS 3.0 Base Score of 5.5 (Medium), it has a low attack complexity and requires local access, primarily impacting confidentiality. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant media coverage, though it has received minimal community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.0.0CPE matchmatch criteria | cpe:2.3:a:oracle:flexcube_private_banking:2.0.0:*:*:*:*:*:*:* | ||
2.0.1CPE matchmatch criteria | cpe:2.3:a:oracle:flexcube_private_banking:2.0.1:*:*:*:*:*:*:* | ||
2.2.0CPE matchmatch criteria | cpe:2.3:a:oracle:flexcube_private_banking:2.2.0:*:*:*:*:*:*:* | ||
12.0.1CPE matchmatch criteria | cpe:2.3:a:oracle:flexcube_private_banking:12.0.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.