cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-21551,https://securityvulnerability.io/vulnerability/CVE-2022-21551,Vulnerability in Oracle GoldenGate Affects Multiple Versions,"A vulnerability exists in Oracle GoldenGate that allows an attacker with network access to exploit the system through HTTP. This issue affects versions prior to 21.7.0.0.0 for Oracle GoldenGate 21c and 19.1.0.0.220719 for 19c. Successful attacks necessitate human interaction from another user, enabling the attacker to potentially take control of the GoldenGate framework. The impact involves significant risks related to confidentiality, integrity, and overall availability of the system.",Oracle,Goldengate,6.8,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2022-07-19T21:07:45.000Z,0 CVE-2022-21442,https://securityvulnerability.io/vulnerability/CVE-2022-21442,Vulnerability in Oracle GoldenGate OGG Core Library Affecting Users,"An access control vulnerability exists in the OGG Core Library of Oracle GoldenGate, impacting versions prior to 23.1. This flaw can be easily exploited by low-privileged attackers who have access to the infrastructure. If leveraged, it can lead to unauthorized takeover of Oracle GoldenGate, posing risks to data integrity and availability. The implications of this vulnerability extend beyond Oracle GoldenGate, affecting other associated products. Immediate action is recommended to secure your systems.",Oracle,Goldengate,8.8,HIGH,0.00044999999227002263,false,,false,false,false,,,false,false,,2022-04-19T20:37:29.000Z,0 CVE-2020-14705,https://securityvulnerability.io/vulnerability/CVE-2020-14705,Security Flaw in Oracle GoldenGate Process Management Component,"A vulnerability in the Oracle GoldenGate product's Process Management component allows an unauthenticated attacker to exploit weaknesses within the product if they have physical access to the communication segment connected to the hardware. This flaw can lead to significant security breaches, potentially allowing an attacker to take over Oracle GoldenGate and affect connected systems. Organizations using versions prior to 19.1.0.0.0 should take immediate action to safeguard their installations.",Oracle,Goldengate,9.6,CRITICAL,0.0010900000343099236,false,,false,false,false,,,false,false,,2020-07-15T17:34:34.000Z,0 CVE-2018-2912,https://securityvulnerability.io/vulnerability/CVE-2018-2912,,"Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle GoldenGate. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle GoldenGate. CVSS 3.0 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).",Oracle,Goldengate,7.5,HIGH,0.0030700000934302807,false,,false,false,false,,,false,false,,2018-10-17T01:00:00.000Z,0 CVE-2018-2914,https://securityvulnerability.io/vulnerability/CVE-2018-2914,,"Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle GoldenGate. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle GoldenGate. CVSS 3.0 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).",Oracle,Goldengate,7.5,HIGH,0.0030700000934302807,false,,false,false,false,,,false,false,,2018-10-17T01:00:00.000Z,0 CVE-2018-2913,https://securityvulnerability.io/vulnerability/CVE-2018-2913,,"Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Monitoring Manager). Supported versions that are affected are 12.1.2.1.0, 12.2.0.2.0 and 12.3.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle GoldenGate. While the vulnerability is in Oracle GoldenGate, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle GoldenGate. Note: For Linux and Windows platforms, the CVSS score is 9.0 with Access Complexity as High. For all other platforms, the cvss score is 10.0. CVSS 3.0 Base Score 10.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).",Oracle,Goldengate,10,CRITICAL,0.0036800000816583633,false,,false,false,false,,,false,false,,2018-10-17T01:00:00.000Z,0 CVE-2018-2832,https://securityvulnerability.io/vulnerability/CVE-2018-2832,,"Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate. The supported version that is affected is 12.2.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle GoldenGate. While the vulnerability is in Oracle GoldenGate, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle GoldenGate accessible data. CVSS 3.0 Base Score 8.6 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).",Oracle,Goldengate,8.6,HIGH,0.0009699999936856329,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2016-0450,https://securityvulnerability.io/vulnerability/CVE-2016-0450,,Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect availability via unknown vectors.,Oracle,Goldengate,,,0.10006999969482422,false,,false,false,false,,,false,false,,2016-01-21T02:00:00.000Z,0 CVE-2016-0451,https://securityvulnerability.io/vulnerability/CVE-2016-0451,,"Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2016-0452.",Oracle,Goldengate,,,0.3353700041770935,false,,false,false,true,2022-07-18T14:08:58.000Z,true,false,false,,2016-01-21T02:00:00.000Z,0 CVE-2016-0452,https://securityvulnerability.io/vulnerability/CVE-2016-0452,,"Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2016-0451.",Oracle,Goldengate,,,0.6067100167274475,false,,false,false,false,,,false,false,,2016-01-21T02:00:00.000Z,0