Security News > 2018 > August > Critical vulnerability in Oracle Database, patch without delay!

Critical vulnerability in Oracle Database, patch without delay!
2018-08-13 15:42

Oracle is urging users to patch their Oracle Database installations to plug a critical security issue that can result in complete compromise of the Oracle Database and shell access to the underlying server. About the vulnerability (CVE-2018-3110) The vulnerability (CVE-2018-3110) affects Oracle Database versions 11.2.0.4 and 12.2.0.1 on Windows and is apparently easy to exploit, but can only be exploited remotely by an authenticated attacker. The vulnerability is in the Java Virtual Machine component of … More → The post Critical vulnerability in Oracle Database, patch without delay! appeared first on Help Net Security.


News URL

http://feedproxy.google.com/~r/HelpNetSecurity/~3/ITJzyoWEljs/

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2018-08-10 CVE-2018-3110 Unspecified vulnerability in Oracle Database Server
A vulnerability was discovered in the Java VM component of Oracle Database Server.
network
low complexity
oracle
critical
9.9

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Oracle 781 388 3148 2078 432 6046