Vulnerabilities > Oracle > Low

DATE CVE VULNERABILITY TITLE RISK
2020-12-14 CVE-2020-8284 A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed, for example doing port scanning and service banner extractions. 3.7
2020-12-10 CVE-2020-8908 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
A temp directory creation vulnerability exists in all versions of Guava, allowing an attacker with access to the machine to potentially access data in a temporary directory created by the Guava API com.google.common.io.Files.createTempDir().
local
low complexity
google quarkus oracle netapp CWE-732
3.3
2020-10-21 CVE-2020-14731 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 18.0/19.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Segment).
network
high complexity
oracle
3.1
2020-10-21 CVE-2020-14732 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 19.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Promotions).
network
high complexity
oracle
3.1
2020-10-21 CVE-2020-14736 Unspecified vulnerability in Oracle Database Vault 11.2.0.4/12.1.0.2/12.2.0.1
Vulnerability in the Database Vault component of Oracle Database Server.
network
low complexity
oracle
3.8
2020-10-21 CVE-2020-14740 Unspecified vulnerability in Oracle SQL Developer
Vulnerability in the SQL Developer Install component of Oracle Database Server.
local
low complexity
oracle
2.8
2020-10-21 CVE-2020-14742 Unspecified vulnerability in Oracle Core Rdbms
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
2.7
2020-10-21 CVE-2020-14743 Unspecified vulnerability in Oracle Java Virtual Machine
Vulnerability in the Java VM component of Oracle Database Server.
network
high complexity
oracle
3.1
2020-10-21 CVE-2020-14759 Unspecified vulnerability in Oracle Solaris 11
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel).
local
high complexity
oracle
2.5
2020-10-21 CVE-2020-14770 Unspecified vulnerability in Oracle Hyperion Bi+ 11.1.2.4
Vulnerability in the Hyperion BI+ product of Oracle Hyperion (component: IQR-Foundation service).
network
high complexity
oracle
2.0