Filters

McAfee ePolicy OrchestratorIncorrect Transfer-Encoding handling with HTTP/1.0

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to a Remote Command Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

8.6
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rights

7.5
First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)

7.8
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera GatewayFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera GatewayA flaw was found in jackson-databind. FasterXML mishandles the interaction between serialization gad…

8.1
First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Communications Diameter Intelligence HubApache Struts Remote Code Execution Vulnerability

First published (updated )

Oracle Retail Xstore Point of ServiceRemote Code Execution in XStream

First published (updated )

Oracle Banking Corporate Lending Process ManagementFasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadg…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Financial Services Data Integration HubAn access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when pe…

7.5
First published (updated )

Oracle Financial Services Data Integration HubApache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag…

First published (updated )

Oracle Banking Liquidity ManagementCode Injection

First published (updated )

Linuxfoundation DojoPrototype pollution in dojo

7.7
First published (updated )

Oracle Insurance Policy Administration J2EECSRF Attack via CORS Preflight Requests with Spring MVC or Spring WebFlux

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Insurance Policy Administration J2EERFD Attack via "Content-Disposition" Header Sourced from Request Input by Spring MVC or Spring WebFlux Application

First published (updated )

Oracle Retail Integration BusPath Traversal

First published (updated )

Oracle Communications Policy ManagementVulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Suppo…

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203