CVE-2019-2436
- EPSS 0.43%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:52
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multi...
CVE-2019-2449
- EPSS 2.56%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:53
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). The supported version that is affected is Java SE: 8u192. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protoco...
CVE-2019-2420
- EPSS 0.13%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:50
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with netwo...
CVE-2019-2422
- EPSS 0.16%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:50
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u201, 8u192 and 11.0.1; Java SE Embedded: 8u191. Difficult to exploit vulnerability allows unauthenticated attacker...
CVE-2019-2426
- EPSS 0.22%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:51
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 7u201, 8u192 and 11.0.1; Java SE Embedded: 8u191. Difficult to exploit vulnerability allows unauthenticated attacke...
CVE-2019-2434
- EPSS 0.23%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:51
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged attacker with network a...
CVE-2018-5481
- EPSS 0.12%
- Published 07.01.2019 14:29:00
- Last modified 21.11.2024 04:08:53
OnCommand Unified Manager for 7-Mode (core package) prior to 5.2.4 uses cookies that lack the secure attribute in certain circumstances making it vulnerable to impersonation via man-in-the-middle (MITM) attacks.
CVE-2018-0734
- EPSS 6.05%
- Published 30.10.2018 12:29:00
- Last modified 21.11.2024 03:38:50
The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1....
CVE-2018-0735
- EPSS 9.26%
- Published 29.10.2018 13:29:00
- Last modified 21.11.2024 03:38:50
The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in Ope...
CVE-2018-10933
- EPSS 78.33%
- Published 17.10.2018 12:29:00
- Last modified 21.11.2024 03:42:20
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.