CVE-2014-4290: Medium severity Oracle Database Server vulnerability
Unspecified vulnerability in the JPublisher component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2014-4291, CVE-2014-4292, CVE-2014-4293, CVE-2014-4296, CVE-2014-4297, CVE-2014-4310, CVE-2014-6547, and CVE-2014-6477.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4290?
CVE-2014-4290 is rated as a moderate severity vulnerability affecting Oracle Database.
How do I fix CVE-2014-4290?
To fix CVE-2014-4290, apply the latest security patches provided by Oracle for the affected database versions.
Which versions of Oracle Database are affected by CVE-2014-4290?
CVE-2014-4290 affects Oracle Database versions 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2.
Can remote authenticated users exploit CVE-2014-4290?
Yes, remote authenticated users can exploit CVE-2014-4290 to impact the confidentiality of the database.
What component is vulnerable in CVE-2014-4290?
The vulnerability in CVE-2014-4290 resides in the JPublisher component of Oracle Database.