CVE-2014-6546: Critical severity oracle database vulnerability
Published Oct 15, 2014
·Updated
Unspecified vulnerability in the JPublisher component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
Affected Software
5 affected components
Oracle Database Server=11.1.0.7
Oracle Database Server=11.2.0.3
Oracle Database Server=11.2.0.4
Oracle Database Server=12.1.0.1
Oracle Database Server=12.1.0.2
Remediation
Event History
Oct 15, 2014
CVE Published
via MITRE·10:03 PM
Data Sourced
via MITRE·10:03 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6546?
CVE-2014-6546 is considered a moderate severity vulnerability, impacting confidentiality, integrity, and availability.
2
How do I fix CVE-2014-6546?
To fix CVE-2014-6546, apply the latest security patches provided by Oracle for affected database versions.
3
Who is affected by CVE-2014-6546?
CVE-2014-6546 affects users of Oracle Database Server versions 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2.
4
What components are involved in CVE-2014-6546?
CVE-2014-6546 involves the JPublisher component of Oracle Database Server.
5
Can CVE-2014-6546 be exploited by remote attackers?
Yes, CVE-2014-6546 can potentially be exploited by remote authenticated users.