Oracle REST Data Services
cpe:2.3:a:oracle:rest_data_services:*:*:*:*:*:*:*
- >= 24.2.0, <= 26.1.0
A vulnerability exists in Oracle REST Data Services, specifically in the Mongoapi component, affecting versions 24.2.0 prior to 26.1.0. This vulnerability allows an unauthenticated attacker with network access via HTTPS to compromise the service. Successful exploitation can lead to unauthorized read access to a subset of data accessible through Oracle REST Data Services.
Exploitation of this vulnerability could result in unauthorized access to certain data within Oracle REST Data Services.
Users are advised to apply the latest patches available through the Oracle Critical Security Patch Update. Instructions for applying these patches can be found in the Oracle REST Data Services patch availability document on My Oracle Support.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.