Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-15 CVE-2020-2530 Unspecified vulnerability in Oracle Http Server 11.1.1.9.0/12.1.3.0.0/12.2.1.3.0
Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Web Listener).
network
low complexity
oracle
6.1
2020-01-15 CVE-2020-2527 Unspecified vulnerability in Oracle Database Server
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
4.1
2020-01-15 CVE-2020-2519 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console).
network
low complexity
oracle
4.3
2020-01-15 CVE-2020-2515 Unspecified vulnerability in Oracle Database Server
Vulnerability in the Database Gateway for ODBC component of Oracle Database Server.
network
high complexity
oracle
5.0
2020-01-15 CVE-2020-2512 Unspecified vulnerability in Oracle Database Server
Vulnerability in the Database Gateway for ODBC component of Oracle Database Server.
network
high complexity
oracle
5.9
2020-01-02 CVE-2019-14862 There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.
network
low complexity
knockoutjs redhat oracle
6.1
2019-12-24 CVE-2019-19924 Improper Handling of Exceptional Conditions vulnerability in multiple products
SQLite 3.30.1 mishandles certain parser-tree rewriting, related to expr.c, vdbeaux.c, and window.c.
network
low complexity
sqlite siemens apache oracle netapp CWE-755
5.3
2019-12-23 CVE-2019-5108 Improper Authentication vulnerability in multiple products
An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3.
6.5
2019-12-22 CVE-2019-19922 Resource Exhaustion vulnerability in multiple products
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to cause a denial of service against non-cpu-bound applications by generating a workload that triggers unwanted slice expiration, aka CID-de53fd7aedb1.
local
low complexity
linux debian canonical oracle netapp CWE-400
5.5
2019-12-13 CVE-2019-16777 Improper Privilege Management vulnerability in multiple products
Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite.
network
low complexity
npmjs opensuse oracle fedoraproject redhat CWE-269
6.5