Latest CVE Feed
-
5.4
MEDIUMCVE-2024-21286
Vulnerability in the PeopleSoft Enterprise ELM Enterprise Learning Management product of Oracle PeopleSoft (component: Enterprise Learning Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
2.4
LOWCVE-2024-4211
Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application Automation Tools allows Exploiting Incorrectly Configured Access Control Security Levels. Multiple missing permission checks - ALM job config has been disc... Read more
Affected Products : application_automation_tools- Published: Oct. 16, 2024
- Modified: Oct. 21, 2024
-
7.5
HIGHCVE-2024-21272
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Python). Supported versions that are affected are 9.0.0 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple prot... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21283
Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported versions that are affected are 9.2.48-9.2.50. Easily exploitable vulnerability allows low privileged attacker ... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21282
Vulnerability in the Oracle Financials product of Oracle E-Business Suite (component: Common Components). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTT... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
2.4
LOWCVE-2024-4692
Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application Automation Tools allows Exploiting Incorrectly Configured Access Control Security Levels. Multiple missing permission checks - Service Virtualization confi... Read more
Affected Products : application_automation_tools- Published: Oct. 16, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21280
Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Authoring). Supported versions that are affected are 12.2.5-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP... Read more
Affected Products : service_contracts- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21279
Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Auctions). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compro... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21278
Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (component: Award Processes). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged a... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21277
Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integration). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with ne... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21276
Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Messages). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21275
Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.2.7-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to c... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21271
Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Field Service Engineer Portal). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21270
Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected are 12.2.6-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access v... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21269
Vulnerability in the Oracle Incentive Compensation product of Oracle E-Business Suite (component: Compensation Plan). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network ac... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21268
Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.2.11-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access vi... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.0
HIGHCVE-2024-4690
Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and below.... Read more
Affected Products : application_automation_tools- Published: Oct. 16, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21267
Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported versions that are affected are 12.2.12-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via H... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21266
Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
8.1
HIGHCVE-2024-21265
Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HT... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024