Autore: Angelo Barbosa

CVE-2025-21492 | Oracle MySQL Server up to 8.0.36/8.4.0 Optimizer improper authorization

A vulnerability, which was classified as critical, has been found in Oracle MySQL Server up to 8.0.36/8.4.0. Affected by this issue is some unknown functionality of the component Optimizer. The manipulation leads to improper authorization. This vulnerability is handled as CVE-2025-21492. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21491 | Oracle MySQL Server up to 8.0.40/8.4.3/9.1.0 InnoDB improper authorization

A vulnerability classified as critical was found in Oracle MySQL Server up to 8.0.40/8.4.3/9.1.0. Affected by this vulnerability is an unknown functionality of the component InnoDB. The manipulation leads to improper authorization. This vulnerability is known as CVE-2025-21491. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21490 | Oracle MySQL Server up to 8.0.40/8.4.3/9.1.0 InnoDB improper authorization

A vulnerability classified as critical has been found in Oracle MySQL Server up to 8.0.40/8.4.3/9.1.0. Affected is an unknown function of the component InnoDB. The manipulation leads to improper authorization. This vulnerability is traded as CVE-2025-21490. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21489 | Oracle Advanced Outbound Telephony up to 12.2.10 Region Mapping improper authentication

A vulnerability was found in Oracle Advanced Outbound Telephony up to 12.2.10. It has been rated as critical. This issue affects some unknown processing of the component Region Mapping. The manipulation leads to improper authentication. The identification of this vulnerability is CVE-2025-21489. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-21245 | Oracle JD Edwards EnterpriseOne Tools up to 9.2.8.2 Business Logic Infra SEC improper authorization

A vulnerability was found in Oracle JD Edwards EnterpriseOne Tools up to 9.2.8.2. It has been declared as critical. This vulnerability affects unknown code of the component Business Logic Infra SEC. The manipulation leads to improper authorization. This vulnerability was named CVE-2024-21245. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più