cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-2943,https://securityvulnerability.io/vulnerability/CVE-2019-2943,Remote Code Execution Vulnerability in Oracle Data Integrator by Oracle,"A vulnerability exists in the Oracle Data Integrator component of Oracle Fusion Middleware, specifically affecting version 12.2.1.3.0. This flaw allows an attacker with low privileges and network access to exploit the system via HTTP. Successful exploitation can lead to unauthorized access to sensitive data, potentially compromising the integrity of confidential information managed by Oracle Data Integrator. Immediate corrective measures are recommended to safeguard sensitive data against this easily exploitable vulnerability.",Oracle,Data Integrator,6.5,MEDIUM,0.0008900000248104334,false,,false,false,false,,,false,false,,2019-10-16T17:40:55.000Z,0 CVE-2019-2720,https://securityvulnerability.io/vulnerability/CVE-2019-2720,Oracle Data Integrator HTTP Vulnerability in Oracle Fusion Middleware,A vulnerability exists in the Oracle Data Integrator component of Oracle Fusion Middleware that allows a low-privileged attacker with network access via HTTP to exploit the system. This can lead to unauthorized read access to certain data within Oracle Data Integrator. Affected versions include 11.1.1.9.0 and 12.2.1.3.0. It is crucial for organizations using these versions to evaluate their security measures and apply necessary patches to mitigate potential risks.,Oracle,Data Integrator,3.1,LOW,0.000539999979082495,false,,false,false,false,,,false,false,,2019-04-23T18:16:45.000Z,0 CVE-2018-2891,https://securityvulnerability.io/vulnerability/CVE-2018-2891,,"Vulnerability in the Oracle Retail Bulk Data Integration component of Oracle Retail Applications (subcomponent: BDI Job Scheduler). The supported version that is affected is 16.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Retail Bulk Data Integration. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Retail Bulk Data Integration, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Retail Bulk Data Integration accessible data as well as unauthorized read access to a subset of Oracle Retail Bulk Data Integration accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).",Oracle,Retail Bulk Data Integration,6.1,MEDIUM,0.0006900000153109431,false,,false,false,false,,,false,false,,2018-07-18T13:00:00.000Z,0 CVE-2016-5602,https://securityvulnerability.io/vulnerability/CVE-2016-5602,,"Unspecified vulnerability in the Oracle Data Integrator component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, 12.2.1.0.0, and 12.2.1.1.0 allows remote authenticated users to affect confidentiality via vectors related to Code Generation Engine.",Oracle,Data Integrator,5.7,MEDIUM,0.0010300000431016088,false,,false,false,false,,,false,false,,2016-10-25T14:00:00.000Z,0 CVE-2016-5618,https://securityvulnerability.io/vulnerability/CVE-2016-5618,,"Unspecified vulnerability in the Oracle Data Integrator component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.2.0.0, 12.1.3.0.0, 12.2.1.0.0, and 12.2.1.1.0 allows remote authenticated users to affect confidentiality via vectors related to Code Generation Engine.",Oracle,Data Integrator,3.1,LOW,0.0010600000387057662,false,,false,false,false,,,false,false,,2016-10-25T14:00:00.000Z,0