Description
Unspecified vulnerability in the Transparent Data Encryption (TDE) Wallet component of Oracle Database server 10.2.0.1 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB27. NOTE: Oracle has not disputed a reliable researcher report that TDA stores the master key without encryption, which allows local users to obtain the key via the SGA.
Remediation
References
Related Vulnerabilities
Java Code Execution Vulnerability (CVE-2018-3211)
Artifactory Insufficient Verification of Data Authenticity Vulnerability (CVE-2018-19971)
WordPress Plugin Game tabs Cross-Site Scripting (0.4.0)
Oracle Application Server CVE-2010-0066 Vulnerability (CVE-2010-0066)
WordPress Plugin Poll, Survey, Questionnaire and Voting system SQL Injection (1.2.4)