Oracle

Oracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affectedOracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affected

Oracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affected

Oracle confirmed a hacker stole credentials from two obsolete servers but said no Oracle Cloud systems or customer data were…

2 months ago
Oracle privately notifies Cloud data breach to customersOracle privately notifies Cloud data breach to customers

Oracle privately notifies Cloud data breach to customers

Oracle confirms a cloud data breach, quietly informing customers while downplaying the impact of the security breach. Oracle confirms a…

2 months ago
Oracle NetSuite misconfiguration could lead to data exposureOracle NetSuite misconfiguration could lead to data exposure

Oracle NetSuite misconfiguration could lead to data exposure

Researchers discovered thousands of Oracle NetSuite e-stores that are vulnerable to data leak, sensitive customer information is at risk. Cybersecurity…

10 months ago
CISA adds Oracle, SugarCRM bugs to its Known Exploited Vulnerabilities CatalogCISA adds Oracle, SugarCRM bugs to its Known Exploited Vulnerabilities Catalog

CISA adds Oracle, SugarCRM bugs to its Known Exploited Vulnerabilities Catalog

US CISA added actively exploited vulnerabilities in SugarCRM and Oracle products to its Known Exploited Vulnerabilities Catalog. The Cybersecurity and…

2 years ago
Exploitation attempts for Oracle E-Business Suite flaw observed after PoC releaseExploitation attempts for Oracle E-Business Suite flaw observed after PoC release

Exploitation attempts for Oracle E-Business Suite flaw observed after PoC release

Threat actors started exploiting a critical Oracle E-Business Suite flaw, tracked as CVE-2022-21587, shortly after a PoC was published. Shadowserver…

2 years ago
CISA adds Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities CatalogCISA adds Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities Catalog

CISA adds Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities Catalog

CISA added a critical flaw impacting Oracle Fusion Middleware, tracked as CVE-2021-35587, to its Known Exploited Vulnerabilities Catalog. The U.S. Cybersecurity…

3 years ago
AttachMe: a critical flaw affects Oracle Cloud Infrastructure (OCI)AttachMe: a critical flaw affects Oracle Cloud Infrastructure (OCI)

AttachMe: a critical flaw affects Oracle Cloud Infrastructure (OCI)

A critical vulnerability in Oracle Cloud Infrastructure (OCI) could be exploited to access the virtual disks of other Oracle customers.…

3 years ago
Oracle Critical Patch Update for January 2022 will fix 483 new flawsOracle Critical Patch Update for January 2022 will fix 483 new flaws

Oracle Critical Patch Update for January 2022 will fix 483 new flaws

The pre-release announcement for Critical Patch Update (CPU) for January 2022 states that Oracle will fix 483 new flaws. This…

3 years ago
Oracle fixes critical RCE vulnerabilities in Weblogic ServerOracle fixes critical RCE vulnerabilities in Weblogic Server

Oracle fixes critical RCE vulnerabilities in Weblogic Server

Oracle released its Critical Patch Update for July 2021, it fixes hundreds of flaws, including Critical Remotely Exploitable vulnerabilities in Weblogic…

4 years ago
Oracle issues emergency patch for CVE-2020-14750 WebLogic Server flawOracle issues emergency patch for CVE-2020-14750 WebLogic Server flaw

Oracle issues emergency patch for CVE-2020-14750 WebLogic Server flaw

Oracle issued an out-of-band security update to address a critical remote code execution issue (CVE-2020-14750) impacting multiple Oracle WebLogic Server versions. Oracle issued…

5 years ago