CVE-2014-6488Oracle Enterprise Manager Database Control vulnerability

4 documents4 sources
Severity
2.1LOWNVD
EPSS
0.2%
top 58.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 15
Latest updateMay 17

Description

Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 10.2.0.5, 11.1.0.1 EM DB Control: 11.1.0.7, 11.2.0.3, 11.2.0.4 EM Plugin for DB: 12.1.0.4, 12.1.0.5, and 12.1.0.6 allows remote authenticated users to affect integrity via unknown vectors related to Content Management.

CVSS vector

AV:N/AC:H/C:N/I:P/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

NVDoracle/enterprise_manager_database_control11.1.0.7, 11.2.0.3, 11.2.0.4+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-757m-xmg7-m53h: Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 102022-05-17
CVEList
CVE-2014-6488: Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 102014-10-15

💬Community

1
Bugzilla
CVE-2013-6488 jenkins: failure to sanitize input before adding it to the page2014-01-17
CVE-2014-6488 — Oracle vulnerability | cvebase