Gmail 发言人 Ross Richendrfer 表示,Gmail 的身份验证准备用 QR 码取代短信验证码。原因是基于短信的验证存在固有的安全漏洞,容易被钓鱼攻击,依赖于运营商的安全实践。新的 QR 码验证要求用户使用手机扫描 QR 码,不再使用来自短信的可共享六位数字,不再依赖于运营商。Google 表示该功能将在未来几个月推出。
A vulnerability classified as critical was found in Oracle Communications Diameter Intelligence Hub 8.2.3.0. This vulnerability affects unknown code of the component Mediation. The manipulation leads to denial of service.
This vulnerability was named CVE-2022-42003. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Oracle Primavera Gateway up to 18.8.15/19.12.15/20.12.10/21.12.8. This issue affects some unknown processing of the component Admin. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2022-42003. The attack may be initiated remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Oracle Communications Messaging Server 8.1.0.20.0. Affected by this issue is some unknown functionality of the component ISC. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2022-42003. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in Oracle Communications Pricing Design Center up to 12.0.0.7.0 and classified as critical. This issue affects some unknown processing of the component REST Service Manager. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2022-42003. The attack may be initiated remotely. There is no exploit available.
A vulnerability was found in Oracle Communications Unified Assurance up to 5.5.9/6.0.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Message Bus. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2022-42003. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Oracle Management Cloud Engine 22.1.0.0.0. This issue affects some unknown processing of the component Security. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2022-42003. The attack may be initiated remotely. There is no exploit available.
A vulnerability was found in Oracle Communications Cloud Native Core Console 22.3.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Configuration. The manipulation leads to denial of service.
This vulnerability is known as CVE-2022-42003. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic was found in FasterXML jackson-databind up to 2.13.x. Affected by this vulnerability is an unknown functionality of the component Deserialize Handler. The manipulation of the argument primitive leads to resource consumption.
This vulnerability is known as CVE-2022-42003. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Oracle Database Server 21c. Affected by this issue is some unknown functionality of the component Oracle Database - Workload Manager. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2022-42003. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, was found in Oracle Database Server 21c. This affects an unknown part of the component Oracle Database Fleet Patching. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2022-42003. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability, which was classified as critical, was found in Oracle Communications Billing and Revenue Management up to 12.0.0.7.0. Affected is an unknown function of the component Billing Care/BOC/DM Kafka/REST API. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2022-42003. It is possible to launch the attack remotely. There is no exploit available.