CVE-2017-10199 is an easily exploitable vulnerability in the Learner Pages subcomponent of Oracle iLearning version 6.2. An unauthenticated attacker can compromise the system via HTTP, requiring user interaction to succeed. This vulnerability carries a CVSS 3.0 Base Score of 8.2 (High), indicating significant impact on confidentiality and partial impact on integrity, allowing unauthorized access to critical data and potential data manipulation. Despite its severity, there is no known public exploit code (Metasploit, Nuclei, ExploitDB), nor is it listed on the KEV catalog, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.2CPE matchmatch criteria | cpe:2.3:a:oracle:ilearning:6.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.