Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-18709 | Vulnerability in the Oracle Database Sharding component of Oracle Database Server. Supported versions that are affected are 19.3-19.22 and 21.3-21.13. Easily exploitable vulnerability allows high privileged attacker having DBA privilege with network access via Oracle Net to compromise Oracle Database Sharding. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Database Sharding. CVSS 3.1 Base Score 2.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:L). |
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpuapr2024.html |
|
Tue, 03 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-404 | |
| Metrics |
ssvc
|
Wed, 27 Nov 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle database Server
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle database Server
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2024-12-03T16:31:26.811Z
Reserved: 2023-12-07T22:28:10.643Z
Link: CVE-2024-20995
Updated: 2024-08-01T22:13:41.470Z
Status : Modified
Published: 2024-04-16T22:15:12.793
Modified: 2024-12-03T17:15:08.597
Link: CVE-2024-20995
No data.
OpenCVE Enrichment
No data.
EUVD