CVE-2020-14705
- EPSS 1.86%
- Veröffentlicht 15.07.2020 18:15:34
- Zuletzt bearbeitet 21.11.2024 05:03:56
Vulnerability in the Oracle GoldenGate product of Oracle GoldenGate (component: Process Management). The supported version that is affected is Prior to 19.1.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with access to the ph...
CVE-2019-14862
- EPSS 2.06%
- Veröffentlicht 02.01.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 04:27:31
There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.
CVE-2018-1311
- EPSS 9.5%
- Veröffentlicht 18.12.2019 20:15:15
- Zuletzt bearbeitet 04.11.2025 19:15:38
The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disabl...
CVE-2019-10219
- EPSS 2.17%
- Veröffentlicht 08.11.2019 15:15:11
- Zuletzt bearbeitet 25.08.2026 16:28:27
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
CVE-2019-3739
- EPSS 2.54%
- Veröffentlicht 18.09.2019 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:42:26
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities during ECDSA key generation. A malicious remote attacker could potentially exploit those vulnerabilities to recover ECDSA key...
CVE-2019-3738
- EPSS 1.68%
- Veröffentlicht 18.09.2019 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:42:26
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to a Missing Required Cryptographic Step vulnerability. A malicious remote attacker could potentially exploit this vulnerability to coerce two parties into computing the same predictable share...
CVE-2019-3740
- EPSS 3.75%
- Veröffentlicht 18.09.2019 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:42:26
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to an Information Exposure Through Timing Discrepancy vulnerabilities during DSA key generation. A malicious remote attacker could potentially exploit those vulnerabilities to recover DSA keys...
CVE-2018-2914
- EPSS 3.86%
- Veröffentlicht 17.10.2018 01:31:14
- Zuletzt bearbeitet 21.11.2024 04:04:44
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with netwo...
- EPSS 4.18%
- Veröffentlicht 17.10.2018 01:31:14
- Zuletzt bearbeitet 21.11.2024 04:04:44
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Monitoring Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker...
CVE-2018-2912
- EPSS 3.86%
- Veröffentlicht 17.10.2018 01:31:14
- Zuletzt bearbeitet 21.11.2024 04:04:44
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with netwo...