Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-22527 | Vulnerability in the RDBMS/Optimizer component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having Execute on DBMS_SQLTUNE privilege with network access via Oracle Net to compromise RDBMS/Optimizer. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of RDBMS/Optimizer accessible data. CVSS 3.0 Base Score 2.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N). |
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpuapr2020.html |
|
Mon, 30 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2024-09-30T15:44:42.467Z
Reserved: 2019-12-10T00:00:00.000Z
Link: CVE-2020-2734
Updated: 2024-08-04T07:17:02.302Z
Status : Modified
Published: 2020-04-15T14:15:22.920
Modified: 2024-11-21T05:26:07.207
Link: CVE-2020-2734
No data.
OpenCVE Enrichment
No data.
EUVD