Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:oracle:database_server:12.1.0.1:*:*:*:*:*:*:*
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2020-2516 |
Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having Create Materialized View, Create Table privilege with network access via OracleNet to compromise Core RDBMS. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Core RDBMS accessible data. CVSS 3.0 Base Score 2.4 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N). Published: January 15, 2020; 12:15:15 PM -0500 |
V3.1: 2.4 LOW V2.0: 3.5 LOW |
CVE-2019-10219 |
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack. Published: November 08, 2019; 10:15:11 AM -0500 |
V3.1: 6.1 MEDIUM V2.0: 4.3 MEDIUM |
CVE-2016-0499 |
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-4794. Published: January 20, 2016; 10:00:47 PM -0500 |
V3.x:(not available) V2.0: 9.0 HIGH |
CVE-2016-0472 |
Unspecified vulnerability in the XDB - XML Database component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality and availability via unknown vectors. Published: January 20, 2016; 10:00:20 PM -0500 |
V3.x:(not available) V2.0: 5.5 MEDIUM |
CVE-2016-0467 |
Unspecified vulnerability in the Security component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect integrity via unknown vectors. Published: January 20, 2016; 10:00:17 PM -0500 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2016-0461 |
Unspecified vulnerability in the XDB - XML Database component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect availability via unknown vectors. Published: January 20, 2016; 10:00:10 PM -0500 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2015-4923 |
Unspecified vulnerability in the XML Developer's Kit for C component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect availability via unknown vectors. Published: January 20, 2016; 9:59:06 PM -0500 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2015-4921 |
Unspecified vulnerability in the Database Vault component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect integrity via unknown vectors. Published: January 20, 2016; 9:59:04 PM -0500 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2015-4900 |
Unspecified vulnerability in the XDB - XML Database component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Published: October 21, 2015; 7:59:59 PM -0400 |
V3.x:(not available) V2.0: 6.5 MEDIUM |
CVE-2015-4888 |
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-4796. Published: October 21, 2015; 7:59:50 PM -0400 |
V3.x:(not available) V2.0: 6.5 MEDIUM |
CVE-2015-4873 |
Unspecified vulnerability in the Database Scheduler component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors. Published: October 21, 2015; 7:59:37 PM -0400 |
V3.x:(not available) V2.0: 7.2 HIGH |
CVE-2015-4863 |
Unspecified vulnerability in the Portable Clusterware component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. Published: October 21, 2015; 7:59:28 PM -0400 |
V3.x:(not available) V2.0: 10.0 HIGH |
CVE-2015-4857 |
Unspecified vulnerability in the RDBMS component in Oracle Database Server 12.1.0.1 and 12.1.0.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. Published: October 21, 2015; 7:59:22 PM -0400 |
V3.x:(not available) V2.0: 5.5 MEDIUM |
CVE-2015-4796 |
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2, when running on Windows, allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-4888. Published: October 21, 2015; 5:59:13 PM -0400 |
V3.x:(not available) V2.0: 9.0 HIGH |
CVE-2015-4794 |
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Published: October 21, 2015; 5:59:11 PM -0400 |
V3.x:(not available) V2.0: 9.0 HIGH |
CVE-2015-4753 |
Unspecified vulnerability in the RDBMS Support Tools component in Oracle Database Server 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect confidentiality via unknown vectors. Published: July 16, 2015; 7:00:47 AM -0400 |
V3.x:(not available) V2.0: 2.1 LOW |
CVE-2015-4740 |
Unspecified vulnerability in the RDBMS Partitioning component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Published: July 16, 2015; 7:00:35 AM -0400 |
V3.x:(not available) V2.0: 6.0 MEDIUM |
CVE-2015-2629 |
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-0457. Published: July 16, 2015; 6:59:51 AM -0400 |
V3.x:(not available) V2.0: 9.0 HIGH |
CVE-2015-2599 |
Unspecified vulnerability in the RDBMS Scheduler component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors. Published: July 16, 2015; 6:59:25 AM -0400 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2015-2595 |
Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 12.1.0.1 and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Published: July 16, 2015; 6:59:21 AM -0400 |
V3.x:(not available) V2.0: 6.5 MEDIUM |