Filter
AND
-Infinity
0

Oracle Communications Diameter Signaling RouterLegion of the Bouncy Castle Java Cryptography APIs could allow a remote attacker to execute arbitrar…

First published (updated )

Oracle Business Process Management SuiteBouncy Castle could provide weaker than expected security, caused by an error in the Low-level inter…

7.5
First published (updated )

Oracle UtilitiesAn issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.chec…

8.1
First published (updated )

Apache TomEEThe ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory all…

7.5
First published (updated )

Oracle Retail Integration BusApache log4j2 log messages substitution (CVE-2021-44228)

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle UnifierXSS

First published (updated )

Oracle UnifierSSRF

7.5
First published (updated )

Oracle Banking Digital ExperienceFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Primavera GatewayA flaw was found in jackson-databind. FasterXML mishandles the interaction between serialization gad…

8.1
First published (updated )

redhat/eap7-apache-cxfCrafted input may cause the jsoup HTML and XML parser to get stuck, timeout, or throw unchecked exceptions

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle UtilitiesCode Injection

First published (updated )

Oracle WebCenter PortalVulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Content…

First published (updated )

Oracle Banking APIsPossible limited path traversal vulnerabily in Apache Commons IO

First published (updated )

Oracle UtilitiesXStream is vulnerable to a Remote Command Execution attack

First published (updated )

Oracle UtilitiesOracle Multiple Products Remote Code Execution Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Banking Digital ExperienceLast updated 24 July 2024

7.5
First published (updated )

Oracle Banking APIsAdvanced Content Filter (ACF) vulnerability allowing to execute JavaScript code using malformed HTML

8.2
First published (updated )

Oracle Banking APIsHTML comments vulnerability allowing to execute JavaScript code

8.2
First published (updated )

Oracle Banking Digital ExperienceLast updated 24 July 2024

7.5
First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

8.6
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)

7.8
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to a Remote Command Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rights

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary Code Execution attack

First published (updated )

Oracle Communications Unified Inventory ManagementXStream can cause a Denial of Service

7.5
First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203