Improper input validation in Oracle Database Server - CVE-2020-5360
Published: April 21, 2021
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Oracle Database - Enterprise Edition Security (Dell BSAFE Micro Edition Suite) in Oracle Database Server. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.
Affected software
Oracle WebLogic Server Proxy Plug-In
Oracle HTTP Server
Oracle Security Service
Dell EMC Unity Operating Environment (OE)
Dell EMC Unity XT Operating Environment (OE)
Dell EMC Unity VSA Operating Environment (OE)
How to mitigate CVE-2020-5360
Dell EMC Unity XT Operating Environment (OE) - update to 5.2.0.0.5.173
Dell EMC Unity VSA Operating Environment (OE) - update to 5.2.0.0.5.173