CVE-2020-14901: Medium severity oracle database vulnerability
Vulnerability in the RDBMS Security component of Oracle Database Server. The supported version that is affected is 19c. Easily exploitable vulnerability allows high privileged attacker having Analyze Any privilege with network access via Oracle Net to compromise RDBMS Security. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all RDBMS Security accessible data. CVSS 3.1 Base Score 4.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Oracle Database Server vulnerability?
The vulnerability ID for this Oracle Database Server vulnerability is CVE-2020-14901.
What is the affected software version for this vulnerability?
The affected software version for this vulnerability is Oracle Database 19c.
What is the severity of CVE-2020-14901?
The severity of CVE-2020-14901 is medium with a severity value of 4.9.
How can this vulnerability be exploited?
This vulnerability can be exploited by a high privileged attacker with Analyze Any privilege and network access via Oracle Net.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following link: https://www.oracle.com/security-alerts/cpuoct2020.html