Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability was discovered in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2, 12.2.0.1 and 18. Easily exploitable vulnerability allows low privileged attacker having Create Session privilege with network access via Oracle Net to compromise Java VM. While the vulnerability is in Java VM, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java VM. CVSS 3.0 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Oracle Database Server Java VM组件安全漏洞
Vulnerability Description
Oracle Database Server是美国甲骨文(Oracle)公司的一套关系数据库管理系统。该数据库管理系统提供数据管理、分布式处理等功能。Java VM是其中的一个Java虚拟机组件。 Oracle Database Server中的Java VM组件存在安全漏洞。攻击者可利用该漏洞控制组件,影响数据的可用性、完整性和保密性。以下版本受到影响:Oracle Database Server 11.2.0.4版本,12.1.0.2版本,12.2.0.1版本,18版本。
CVSS Information
N/A
Vulnerability Type
N/A