Security News

Oracle Releases Patches for Exploited Apache Struts Flaw
2017-09-25 15:36

Oracle has released patches for many of its products to address several vulnerabilities in the Apache Struts 2 framework, including one that has been exploited in the wild for the past few weeks. read more

Engineering Firm Leaks Sensitive Data on Dell, SBC and Oracle (Threatpost)
2017-08-08 18:08

Power Quality Engineering publicly exposed sensitive electrical infrastructure data on the public internet tied to Dell Technologies, SBC, Freescale, Oracle, Texas Instruments and the City of Austin.

Oracle Patches Record-Breaking 308 Vulnerabilities in July Update (Security Week)
2017-07-19 10:25

Oracle on Tuesday released its July 2017 Critical Patch Update (CPU) to address a total of 308 vulnerabilities, the highest number of security fixes ever released in a quarter by the enterprise...

Oracle Releases Biggest Update Ever: 308 Vulnerabilities Patched (Threatpost)
2017-07-18 20:47

Oracle's July Critical Patch Update included fixes for 308 vulnerabilities, 165 of which are remotely exploitable.

Oracle E-Business Suite Flaw Allows Downloads of Documents (Threatpost)
2017-07-18 19:45

Oracle today in its Critical Patch Update addressed a critical vulnerability in its Oracle E-Business Suite of business applications that allows for the download of business documents.

Researchers Remotely Hijack Oracle OAM 10g Sessions (Security Week)
2017-07-13 15:11

Two security researchers recently discovered an issue with improperly configured Oracle Access Manager (OAM) 10g that can be exploited by remote attackers to hijack sessions from unsuspecting...

Vulnerabilities Expose Oracle OAM 10g to Remote Session Hijacking (Threatpost)
2017-07-12 12:18

Version 10g of Oracle Access Manager suffers from vulnerabilities that could allow an attacker to hijack sessions.