CVE-2019-2477 is a denial-of-service vulnerability affecting Oracle Outside In Technology versions 8.5.3 and 8.5.4, a component of Oracle Fusion Middleware. This easily exploitable flaw allows an unauthenticated attacker with network access via HTTP to cause a complete system crash or hang. Rated with a CVSS 3.0 Base Score of 7.5 (High), its impact is solely on availability, with no confidentiality or integrity compromise. There is currently no public exploit code available, nor is there any evidence of active exploitation or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.5.3CPE matchmatch criteria | cpe:2.3:a:oracle:outside_in_technology:8.5.3:*:*:*:*:*:*:* | ||
8.5.4CPE matchmatch criteria | cpe:2.3:a:oracle:outside_in_technology:8.5.4:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.