CVE-2019-2473 is a denial-of-service vulnerability affecting Oracle Outside In Technology versions 8.5.3 and 8.5.4, a component of Oracle Fusion Middleware. An unauthenticated attacker can exploit this easily via network access (HTTP) to cause a complete system hang or frequent crashes. With a CVSS v3.0 score of 7.5 (High), the primary impact is to availability, assuming data is directly passed from the network to the affected code. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it shows minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.5.3CPE matchmatch criteria | cpe:2.3:a:oracle:outside_in_technology:8.5.3:*:*:*:*:*:*:* | ||
8.5.4CPE matchmatch criteria | cpe:2.3:a:oracle:outside_in_technology:8.5.4:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.