Vulnerabilities > Oracle > Goldengate

DATE CVE VULNERABILITY TITLE RISK
2019-09-18 CVE-2019-3739 Cryptographic Issues vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation.
network
low complexity
dell oracle CWE-310
6.5
2019-09-18 CVE-2019-3738 Missing Required Cryptographic Step vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to a Missing Required Cryptographic Step vulnerability.
network
low complexity
dell mcafee oracle CWE-325
6.5
2018-10-17 CVE-2018-2914 NULL Pointer Dereference vulnerability in Oracle Goldengate 12.1.2.1.0/12.2.0.2.0/12.3.0.1.0
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager).
network
low complexity
oracle CWE-476
5.0
2018-10-17 CVE-2018-2913 Out-of-bounds Write vulnerability in Oracle Goldengate 12.1.2.1.0/12.2.0.2.0/12.3.0.1.0
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Monitoring Manager).
network
low complexity
oracle CWE-787
7.5
2018-10-17 CVE-2018-2912 NULL Pointer Dereference vulnerability in Oracle Goldengate 12.1.2.1.0/12.2.0.2.0/12.3.0.1.0
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager).
network
low complexity
oracle CWE-476
5.0
2018-04-19 CVE-2018-2832 Unspecified vulnerability in Oracle Goldengate 12.2.0.1
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate.
network
low complexity
oracle
5.0
2017-04-17 CVE-2017-5645 Deserialization of Untrusted Data vulnerability in multiple products
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
network
low complexity
apache netapp redhat oracle CWE-502
critical
9.8
2016-01-21 CVE-2016-0452 Arbitrary File Upload vulnerability in Oracle Goldengate 11.2/12.1.2
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2016-0451.
network
low complexity
oracle
critical
10.0
2016-01-21 CVE-2016-0451 Arbitrary File Upload vulnerability in Oracle Goldengate 11.2/12.1.2
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2016-0452.
network
low complexity
oracle
critical
10.0
2016-01-21 CVE-2016-0450 Denial of Service vulnerability in Oracle Goldengate 11.2/12.1.2
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect availability via unknown vectors.
network
low complexity
oracle
5.0