cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-14655,https://securityvulnerability.io/vulnerability/CVE-2020-14655,Vulnerability in SSL API of Oracle Fusion Middleware,"The vulnerability in the Oracle Security Service component of Oracle Fusion Middleware's SSL API allows an unauthenticated attacker with network access via HTTPS to potentially compromise sensitive data. A successful exploitation can lead to unauthorized access, enabling attackers to read, update, insert, or delete accessible data within Oracle Security Service, posing significant risks to data confidentiality and integrity.",Oracle,Security Service,6.5,MEDIUM,0.0019399999873712659,false,,false,false,false,,,false,false,,2020-07-15T17:34:32.000Z,0 CVE-2020-14530,https://securityvulnerability.io/vulnerability/CVE-2020-14530,Unauthorized Data Access Vulnerability in Oracle Security Service,"A vulnerability exists in the Oracle Security Service of Oracle Fusion Middleware, where an unauthenticated attacker with network access through HTTPS could exploit this flaw. Successful exploitation could lead to unauthorized access to sensitive information or complete control over all data accessible via Oracle Security Service, potentially compromising critical data integrity and confidentiality.",Oracle,Security Service,5.9,MEDIUM,0.0019399999873712659,false,,false,false,false,,,false,false,,2020-07-15T17:34:25.000Z,0 CVE-2020-2545,https://securityvulnerability.io/vulnerability/CVE-2020-2545,Vulnerability in Oracle HTTP Server of Oracle Fusion Middleware,"An exploitable vulnerability exists in the Oracle HTTP Server component of Oracle Fusion Middleware, allowing an unauthenticated attacker with network access via HTTPS to potentially compromise the server. Successful exploitation may lead to unauthorized actions, including a partial denial of service, impacting server availability and functionality. This vulnerability affects specific versions of the Oracle HTTP Server, highlighting the need for timely updates and patching solutions.",Oracle,Security Service,5.3,MEDIUM,0.0008299999753944576,false,,false,false,false,,,false,false,,2020-01-15T16:34:00.000Z,0 CVE-2018-2765,https://securityvulnerability.io/vulnerability/CVE-2018-2765,,"Vulnerability in the Oracle Security Service component of Oracle Fusion Middleware (subcomponent: Oracle SSL API). Supported versions that are affected are 11.1.1.9.0, 12.1.3.0.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Security Service accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).",Oracle,"Security Service,Database - Enterprise Edition",7.5,HIGH,0.0015800000401213765,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2017-10166,https://securityvulnerability.io/vulnerability/CVE-2017-10166,,"Vulnerability in the Oracle Security Service component of Oracle Fusion Middleware (subcomponent: C Oracle SSL API). Supported versions that are affected are FMW: 11.1.1.9.0 and 12.1.3.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Security Service. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Security Service accessible data. CVSS 3.0 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N).",Oracle,Security Service,3.7,LOW,0.001550000044517219,false,,false,false,false,,,false,false,,2017-10-19T17:00:00.000Z,0