Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2020-07-30 CVE-2020-16166 Use of Insufficiently Random Values vulnerability in multiple products
The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c.
3.7
2020-07-29 CVE-2020-16135 NULL Pointer Dereference vulnerability in multiple products
libssh 0.9.4 has a NULL pointer dereference in tftpserver.c if ssh_buffer_new returns NULL.
5.9
2020-07-27 CVE-2020-7017 Cross-site Scripting vulnerability in multiple products
In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw.
network
high complexity
elasticsearch oracle CWE-79
6.7
2020-07-27 CVE-2020-7016 Resource Exhaustion vulnerability in multiple products
Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion.
network
high complexity
elasticsearch oracle CWE-400
4.8
2020-07-24 CVE-2020-8174 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.
network
high complexity
nodejs oracle netapp CWE-191
8.1
2020-07-15 CVE-2020-2984 Unspecified vulnerability in Oracle Configuration Manager 12.1.2.0.6
Vulnerability in the Oracle Configuration Manager product of Oracle Enterprise Manager (component: Discovery and collection script).
network
low complexity
oracle
7.1
2020-07-15 CVE-2020-2983 Unspecified vulnerability in Oracle Data Masking and Subsetting 13.3.0.0/13.4.0.0
Vulnerability in the Oracle Data Masking and Subsetting product of Oracle Enterprise Manager (component: Data Masking).
network
low complexity
oracle
7.1
2020-07-15 CVE-2020-2982 Unspecified vulnerability in Oracle Enterprise Manager Base Platform 13.3.0.0/13.4.0.0
Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Enterprise Config Management).
network
low complexity
oracle
7.1
2020-07-15 CVE-2020-2981 Unspecified vulnerability in Oracle Berkeley DB
Vulnerability in the Data Store component of Oracle Berkeley DB.
local
high complexity
oracle
7.0
2020-07-15 CVE-2020-2977 Unspecified vulnerability in Oracle Application Express
Vulnerability in the Oracle Application Express component of Oracle Database Server.
network
low complexity
oracle
4.6