CVE-2020-14530: Medium severity oracle security service vulnerability
Vulnerability in the Oracle Security Service product of Oracle Fusion Middleware (component: None). The supported version that is affected is 11.1.1.9.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Security Service accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-14530?
medium
How does CVE-2020-14530 impact the Oracle Security Service product of Oracle Fusion Middleware?
It allows an unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service.
Which version of Oracle Security Service is affected by CVE-2020-14530?
The supported version 11.1.1.9.0 is affected.
How can an attacker exploit CVE-2020-14530?
The vulnerability is difficult to exploit, but an attacker with network access via HTTPS can compromise Oracle Security Service.
Where can I find more information about CVE-2020-14530?
You can find more information about CVE-2020-14530 on the Oracle Security Advisory website: https://www.oracle.com/security-alerts/cpujul2020.html