cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-14756,https://securityvulnerability.io/vulnerability/CVE-2020-14756,Unauthenticated Network Vulnerability in Oracle Coherence by Oracle,"An unauthenticated network vulnerability has been identified in Oracle Coherence within the Oracle Fusion Middleware suite. This vulnerability enables remote attackers to exploit the system via IIOP and T3 protocols, potentially resulting in the complete takeover of Oracle Coherence. Affected versions include 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0, and 14.1.1.0.0, highlighting the need for immediate security measures to protect sensitive information.",Oracle,Utilities Framework,9.8,CRITICAL,0.01042999979108572,false,,false,false,true,2021-02-04T07:03:56.000Z,true,false,false,,2021-01-20T14:49:58.000Z,0 CVE-2020-14895,https://securityvulnerability.io/vulnerability/CVE-2020-14895,SQL Injection Vulnerability in Oracle Utilities Framework by Oracle,"A vulnerability exists within Oracle Utilities Framework that allows attackers with low privileges and network access via HTTP to exploit the system. Successful exploitation can lead to unauthorized access, enabling attackers to perform actions such as inserting, updating, or deleting data, as well as unauthorized reading of accessible data sets. This vulnerability affects several versions of Oracle Utilities Framework, jeopardizing confidentiality and integrity.",Oracle,Utilities Framework,5.4,MEDIUM,0.0005699999746866524,false,,false,false,false,,,false,false,,2020-10-21T14:04:31.000Z,0 CVE-2020-2555,https://securityvulnerability.io/vulnerability/CVE-2020-2555,Unauthenticated Remote Code Execution Vulnerability in Oracle Coherence by Oracle,"An exploitable vulnerability in the Oracle Coherence component of Oracle Fusion Middleware allows an unauthenticated attacker with network access via T3 to compromise various supported versions of the product. Successful exploitation can lead to complete takeover of the Oracle Coherence application, posing significant risks to confidentiality, integrity, and availability.",Oracle,"Webcenter Portal,Utilities Framework",9.8,CRITICAL,0.9713199734687805,true,2021-11-03T00:00:00.000Z,false,false,true,2021-11-03T00:00:00.000Z,true,false,false,,2020-01-15T16:34:00.000Z,0