Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-2735 Unspecified vulnerability in Oracle Database Server
Vulnerability in the Java VM component of Oracle Database Server.
network
high complexity
oracle
4.6
2020-04-15 CVE-2020-2706 Unspecified vulnerability in Oracle Primavera P6 Enterprise Project Portfolio Management
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management product of Oracle Construction and Engineering (component: Project Manager).
network
oracle
5.8
2020-04-15 CVE-2020-2594 Unspecified vulnerability in Oracle Primavera P6 Enterprise Project Portfolio Management
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management product of Oracle Construction and Engineering (component: Project Manager).
network
oracle
6.0
2020-04-15 CVE-2020-2553 Unspecified vulnerability in Oracle Knowledge
Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console).
network
oracle
5.8
2020-04-15 CVE-2020-2524 Unspecified vulnerability in Oracle Knowledge
Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: InQuira Search).
network
oracle
4.3
2020-04-15 CVE-2020-2522 Unspecified vulnerability in Oracle Knowledge 8.6.0/8.6.1
Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console).
network
oracle
4.3
2020-04-15 CVE-2020-2514 Unspecified vulnerability in Oracle Application Express
Vulnerability in the Oracle Application Express component of Oracle Database Server.
network
oracle
4.9
2020-04-15 CVE-2019-2880 Unspecified vulnerability in Oracle Retail Store Inventory Management 16.0
Vulnerability in the Oracle Retail Store Inventory Management product of Oracle Retail Applications (component: Security).
network
low complexity
oracle
6.5
2020-04-13 CVE-2020-1730 NULL Pointer Dereference vulnerability in multiple products
A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabled) ciphers.
5.3
2020-04-09 CVE-2020-11655 Improper Initialization vulnerability in multiple products
SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
5.0