Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-2886 Unspecified vulnerability in Oracle Forms 12.2.1.3.0
Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Services).
network
low complexity
oracle
6.1
2019-10-16 CVE-2019-2884 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 17.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Segment).
network
high complexity
oracle
5.9
2019-10-16 CVE-2019-2883 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 17.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Segment).
network
low complexity
oracle
4.6
2019-10-16 CVE-2019-2872 Unspecified vulnerability in Oracle Retail Xstore Point of Service 17.0.3/18.0.1/19.0.0
Vulnerability in the Oracle Retail Xstore Point of Service product of Oracle Retail Applications (component: Point of Sale).
high complexity
oracle
2.7
2019-10-16 CVE-2019-2765 Unspecified vulnerability in Oracle Solaris 10/11
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem).
local
high complexity
oracle
5.3
2019-10-16 CVE-2019-2734 Unspecified vulnerability in Oracle Database Server 12.2.0.1/18C/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
4.3
2019-10-16 CVE-2018-3300 Unspecified vulnerability in Oracle Retail Xstore Office 7.1
Vulnerability in the Oracle Retail Xstore Office product of Oracle Retail Applications (component: Internal Operations).
network
low complexity
oracle
5.4
2019-10-16 CVE-2018-2875 Unspecified vulnerability in Oracle Database Server 12.2.0.1/18C/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
5.0
2019-10-15 CVE-2019-17195 Improper Handling of Exceptional Conditions vulnerability in multiple products
Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a potential authentication bypass.
network
low complexity
connect2id apache oracle CWE-755
critical
9.8
2019-10-14 CVE-2019-17545 Double Free vulnerability in multiple products
GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.
network
low complexity
osgeo oracle debian fedoraproject opensuse CWE-415
critical
9.8