oracle
10,202 tracked vulnerabilities.
CVE-2024-20947
MEDIUM
Oracle E-Business Suite - CRM User Management Framework - Info Disc...
Feb 17, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-20945
MEDIUM
Oracle Java SE <21.0.1 - Info Disclosure
Feb 17, 2024
CVSS 4.7
EPSS 0.00
CVE-2024-20943
MEDIUM
Oracle Knowledge Management 12.2.3-12.2.13 - Improper Authorization via HTTP
Feb 17, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-20941
MEDIUM
Oracle Installed Base 12.2.3-12.2.13 - Unauthenticated Out-of-bounds Read via HTML UI
Feb 17, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20939
MEDIUM
Oracle CRM Technical Foundation 12.2.3-12.2.13 - Authenticated Partial Denial of Service via Admin Console
Feb 17, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-20937
MEDIUM
Oracle JD Edwards EnterpriseOne Tools < 9.2.8.1 - Unauthorized Data Access via Monitoring and Diagnostics SEC
Feb 17, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-20935
MEDIUM
Oracle E-Business Suite <12.2.13 - Info Disclosure
Feb 17, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20933
MEDIUM
Oracle Installed Base 12.2.3-12.2.13 - Unauthenticated Cross-Site Request Forgery in Engineering Change Order
Feb 17, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20931
HIGH
Oracle WebLogic Server 12.2.1.4.0 and 14.1.1.0.0 - Unauthenticated Unauthorized Data Access via T3/IIOP
Feb 17, 2024
CVSS 7.5
EPSS 0.89
CVE-2024-20929
MEDIUM
Oracle Application Object Library 12.2.3-12.2.13 - Unauthenticated Improper Access Control via DB Privileges
Feb 17, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20927
HIGH
Oracle WebLogic Server 12.2.1.4.0 and 14.1.1.0.0 - Unauthenticated Improper Access Control via HTTP
Feb 17, 2024
CVSS 8.6
EPSS 0.00
CVE-2024-20925
LOW
Oracle Java SE <8u391, Oracle GraalVM EE <21.3.8 - Info Disclosure
Feb 17, 2024
CVSS 3.1
EPSS 0.00
CVE-2024-20923
LOW
Oracle Java SE <8u391, Oracle GraalVM EE <21.3.8 - Info Disclosure
Feb 17, 2024
CVSS 3.1
EPSS 0.00
CVE-2024-20921
MEDIUM
Oracle GraalVM and JDK - Unauthenticated Unauthorized Data Access via Hotspot Component
Feb 17, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-20919
MEDIUM
Oracle Java SE <21.0.1 - Info Disclosure
Feb 17, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-20917
HIGH
Oracle Enterprise Manager Base Platform 13.5.0.0 - Unauthenticated Data Access and Partial DoS via Log Management
Feb 17, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-20915
MEDIUM
Oracle Application Object Library 12.2.3-12.2.13 - Unauthenticated Partial Denial of Service via HTTP Request Smuggling
Feb 17, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-20913
MEDIUM
Oracle Analytics <12.2.1.4.0 - Info Disclosure
Feb 17, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-20911
LOW
Oracle Audit Vault and Database Firewall 20.1-20.9 - Unauthorized Data Access via Firewall Component
Feb 17, 2024
CVSS 2.6
EPSS 0.00
CVE-2024-20909
HIGH
Oracle Audit Vault <20.10 - Unauthenticated RCE
Feb 17, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-20907
MEDIUM
Oracle E-Business Suite - File Download
Feb 17, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-20905
LOW
Oracle JD Edwards EnterpriseOne Tools < 9.2.8.0 - Authenticated Partial Denial of Service via JDENET
Feb 17, 2024
CVSS 2.7
EPSS 0.00
CVE-2024-20903
MEDIUM
Oracle Database Server <21.12 - RCE
Feb 17, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-20987
MEDIUM
Oracle Analytics <12.2.1.4.0 - Info Disclosure
Jan 16, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-20985
MEDIUM
MySQL Server < 8.0.35 and 8.2.0 - Denial of Service in UDF Component
Jan 16, 2024
CVSS 6.5
EPSS 0.01
Products
mysql 1,329
jre 798
jdk 786
solaris 553
database_server 513
vm_virtualbox 417
peoplesoft_enterprise_peopletools 352
e-business_suite 330
fusion_middleware 313
weblogic_server 307
mysql_server 277
linux 229
application_server 198
outside_in_technology 195
graalvm 187
peoplesoft_products 158
jd_edwards_enterpriseone_tools 150
communications_cloud_native_core_policy 125
retail_xstore_point_of_service 125
enterprise_manager_base_platform 120
zfs_storage_appliance_kit 117
enterprise_manager_ops_center 107
jrockit 107
http_server 105
openjdk 98
supply_chain_products_suite 97
flexcube_universal_banking 95
primavera_unifier 95
webcenter_portal 90
financial_services_analytical_applications_infrastructure 89
Quick Filters