7.8
CVSSv3

CVE-2022-29934

Published: 29/04/2022 Updated: 08/08/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

USU Oracle Optimization prior to 5.17.5 lacks Polkit authentication, which allows smartcollector users to achieve root access via pkexec. NOTE: this is not an Oracle Corporation product.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

usu oracle optimization 5.16.2