CVE-2014-0419
Unspecified vulnerability in the Oracle Secure Global Desktop (SGD) component in Oracle Virtualization SGD before 4.63 with December 2013 PSU, 4.71, 5.0 with December 2013 PSU, and 5.10 allows remote attackers to affect confidentiality, integrity, and…
Does this matter?
Lower severity and a low EPSS score (1.50%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Oracle Secure Global Desktop (SGD) component in Oracle Virtualization SGD before 4.63 with December 2013 PSU, 4.71, 5.0 with December 2013 PSU, and 5.10 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Administration Console and Workspace Web Applications.
- CVSS 2.0
- 5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
- EPSS
- 1.50% probability · 73th percentile
- CISA KEV
- Not listed
- Affected
- oracle/virtualization secure global desktop
- Source
- secalert_us@oracle.com
References
- http://osvdb.org/102110
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlVendor Advisory
- http://www.securityfocus.com/bid/64758
- http://www.securityfocus.com/bid/64902
- http://www.securitytracker.com/id/1029610
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90367
- http://osvdb.org/102110
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlVendor Advisory
- http://www.securityfocus.com/bid/64758
- http://www.securityfocus.com/bid/64902
- http://www.securitytracker.com/id/1029610
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90367
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.