Filters

Oracle Retail Xstore Point of ServiceDenial of Service by injecting highly recursive collections or maps in XStream

7.5
First published (updated )

Apache Log4jApache Log4j2 vulnerable to RCE via JDBC Appender when attacker controls configuration

First published (updated )

Oracle Utilities FrameworkXStream Remote Code Execution Vulnerability

First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.8
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Utilities FrameworkA Server-Side Forgery Request vulnerability in XStream via PriorityQueue unmarshaling

8.5
First published (updated )

Oracle Utilities FrameworkA Server-Side Forgery Request vulnerability in XStream via HashMap unmarshaling

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Utilities FrameworkXStream is vulnerable to an Arbitrary Code Execution attack

8.5
First published (updated )

Oracle Banking Digital ExperienceVulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versi…

8.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to a Remote Command Execution attack

8.8
First published (updated )

Oracle Communications Unified Inventory ManagementXStream can cause a Denial of Service

7.5
First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

8.6
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rights

7.5
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Primavera GatewayA flaw was found in jackson-databind. FasterXML mishandles the interaction between serialization gad…

8.1
First published (updated )

Oracle Banking PlatformFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

8.1
First published (updated )

Oracle Banking PlatformFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

8.1
First published (updated )

Oracle Retail Xstore Point of ServiceBuffer Overflow

7.5
First published (updated )

Oracle Banking PlatformCode Injection

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Retail Xstore Point of ServiceRFD Protection Bypass via jsessionid

8.7
First published (updated )

Oracle Banking PlatformXEE

7.5
First published (updated )

Apache TomEEThe ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory all…

7.5
First published (updated )

Oracle FLEXCUBE Investor ServicingThe file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get int…

7.5
First published (updated )

Oracle Utilities FrameworkA flaw was found in the Apache Commons BeanUtils, where the class property in PropertyUtilsBean is n…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache HTTP serverUse After Free, Buffer Overflow, Null Pointer Dereference

7.2
First published (updated )

Nodejs Node.jsSome HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially leading to a denial of service

7.8
First published (updated )

Oracle Banking PlatformInfoleak

7.5
First published (updated )

Oracle Primavera UnifierSSRF

7.5
First published (updated )

Oracle Retail Xstore Point of Servicec3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration du…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Canonical Ubuntu LinuxApache HTTP Server Privilege Escalation Vulnerability

First published (updated )

Canonical Ubuntu LinuxRace Condition

7.5
First published (updated )

Oracle Instantis EnterprisetrackA bug exists in the way mod_ssl handled client renegotiations. A remote attacker could send a carefu…

7.5
First published (updated )

Oracle Insurance Rules PaletteDoS Attack via Range Requests

7.5
First published (updated )

Oracle FLEXCUBE Private BankingPivotal Spring Framework could allow a remote attacker to bypass security restrictions, caused by a …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Business Process Management SuiteBouncy Castle could provide weaker than expected security, caused by an error in the Low-level inter…

7.5
First published (updated )

Oracle Application Testing SuiteSpring Framework version 5.0.5 when used in combination with any versions of Spring Security contain…

8.8
First published (updated )

Oracle Retail Xstore Point of ServiceVulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (…

7.6
First published (updated )

Vmware Spring SecurityInput Validation

7.5
First published (updated )

Apache TomcatApache Tomcat Remote Code Execution Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Retail Xstore Point of ServiceVulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (…

8.2
First published (updated )

Oracle REST Data ServicesInfoleak

7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203