Vulnerabilities > Oracle > Database > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-21 CVE-2020-14901 Unspecified vulnerability in Oracle Database 19C
Vulnerability in the RDBMS Security component of Oracle Database Server.
network
low complexity
oracle
4.9
2020-07-15 CVE-2020-2978 Unspecified vulnerability in Oracle Database
Vulnerability in the Oracle Database - Enterprise Edition component of Oracle Database Server.
network
low complexity
oracle
4.1
2019-09-18 CVE-2019-3740 Information Exposure Through Discrepancy vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to an Information Exposure Through Timing Discrepancy vulnerabilities during DSA key generation.
network
low complexity
dell oracle CWE-203
6.5
2019-09-18 CVE-2019-3739 Cryptographic Issues vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation.
network
low complexity
dell oracle CWE-310
6.5
2019-09-18 CVE-2019-3738 Missing Required Cryptographic Step vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to a Missing Required Cryptographic Step vulnerability.
network
low complexity
dell mcafee oracle CWE-325
6.5
2018-07-26 CVE-2018-1288 In Apache Kafka 0.9.0.0 to 0.9.0.1, 0.10.0.0 to 0.10.2.1, 0.11.0.0 to 0.11.0.2, and 1.0.0, authenticated Kafka users may perform action reserved for the Broker via a manually created fetch request interfering with data replication, resulting in data loss.
network
low complexity
apache redhat oracle
5.4
2017-10-19 CVE-2017-10261 Information Exposure vulnerability in Oracle Database 11.2.0.4/12.1.0.2
Vulnerability in the XML Database component of Oracle Database Server.
local
low complexity
oracle CWE-200
6.5
2017-04-24 CVE-2017-3567 Unspecified vulnerability in Oracle Database 11.2.0.4/12.1.0.2
Vulnerability in the OJVM component of Oracle Database Server.
network
high complexity
oracle
5.3
2016-10-25 CVE-2016-5572 Permissions, Privileges, and Access Controls vulnerability in Oracle Database 12.1.0.2
Unspecified vulnerability in the Kernel PDB component in Oracle Database Server 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors.
local
high complexity
oracle CWE-264
6.4
2016-10-25 CVE-2016-5497 Improper Access Control vulnerability in Oracle Database 12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors.
local
high complexity
oracle CWE-284
6.4