First published: Wed Jul 15 2020(Updated: )
Vulnerability in the Oracle Security Service product of Oracle Fusion Middleware (component: None). The supported version that is affected is 11.1.1.9.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Security Service accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Security Service | =11.1.1.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
medium
It allows an unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service.
The supported version 11.1.1.9.0 is affected.
The vulnerability is difficult to exploit, but an attacker with network access via HTTPS can compromise Oracle Security Service.
You can find more information about CVE-2020-14530 on the Oracle Security Advisory website: https://www.oracle.com/security-alerts/cpujul2020.html