Russian-based RomCom cybercrime group chained two zero-day vulnerabilities in recent attacks targeting Firefox and Tor Browser users across Europe and North America. [...]
A vulnerability was found in Oracle JD Edwards EnterpriseOne Tools 9.2. It has been classified as critical. Affected is an unknown function of the component Enterprise Infrastructure Security. The manipulation leads to missing encryption of sensitive data.
This vulnerability is traded as CVE-2019-1547. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle MySQL Enterprise Backup up to 3.12.4/4.1.3 and classified as critical. This issue affects some unknown processing of the component Security. The manipulation leads to missing encryption of sensitive data.
The identification of this vulnerability is CVE-2019-1547. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Oracle PeopleSoft Enterprise PeopleTools 8.56/8.57 and classified as critical. This vulnerability affects unknown code of the component Security. The manipulation leads to missing encryption of sensitive data.
This vulnerability was named CVE-2019-1547. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Oracle Secure Global Desktop 5.4/5.5. Affected is an unknown function. The manipulation leads to missing encryption of sensitive data.
This vulnerability is traded as CVE-2019-1547. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Oracle API Gateway 11.1.2.4.0. This vulnerability affects unknown code of the component Oracle API Gateway. The manipulation leads to missing encryption of sensitive data.
This vulnerability was named CVE-2019-1547. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Oracle Endeca Server 7.7.0. This issue affects some unknown processing of the component Product Code. The manipulation leads to missing encryption of sensitive data.
The identification of this vulnerability is CVE-2019-1547. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in HP Operations Agent 11.0. Affected is an unknown function of the component Privileges. The manipulation leads to Local Privilege Escalation.
This vulnerability is traded as CVE-2014-2630. The attack needs to be approached locally. Furthermore, there is an exploit available.
A vulnerability has been found in OpenSSL up to 1.0.2s/1.1.0k/1.1.1c and classified as critical. This vulnerability affects unknown code of the component EC Group Handler. The manipulation leads to missing encryption of sensitive data.
This vulnerability was named CVE-2019-1547. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Oracle MySQL Workbench up to 8.0.17. Affected by this vulnerability is an unknown functionality of the component OpenSSL. The manipulation leads to insufficiently random values.
This vulnerability is known as CVE-2019-1549. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Oracle VM VirtualBox up to 5.2.33/6.0.13 and classified as critical. This vulnerability affects unknown code. The manipulation leads to missing encryption of sensitive data.
This vulnerability was named CVE-2019-1547. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.