Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.4

    MEDIUM
    CVE-2024-21286

    Vulnerability in the PeopleSoft Enterprise ELM Enterprise Learning Management product of Oracle PeopleSoft (component: Enterprise Learning Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 2.4

    LOW
    CVE-2024-4211

    Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application Automation Tools allows Exploiting Incorrectly Configured Access Control Security Levels. Multiple missing permission checks - ALM job config has been disc... Read more

    Affected Products : application_automation_tools
    • Published: Oct. 16, 2024
    • Modified: Oct. 21, 2024
  • 7.5

    HIGH
    CVE-2024-21272

    Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Python). Supported versions that are affected are 9.0.0 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple prot... Read more

    Affected Products : mysql mysql_connector\/python
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21283

    Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported versions that are affected are 9.2.48-9.2.50. Easily exploitable vulnerability allows low privileged attacker ... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21282

    Vulnerability in the Oracle Financials product of Oracle E-Business Suite (component: Common Components). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTT... Read more

    Affected Products : e-business_suite financials
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 2.4

    LOW
    CVE-2024-4692

    Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application Automation Tools allows Exploiting Incorrectly Configured Access Control Security Levels. Multiple missing permission checks - Service Virtualization confi... Read more

    Affected Products : application_automation_tools
    • Published: Oct. 16, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21280

    Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Authoring). Supported versions that are affected are 12.2.5-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP... Read more

    Affected Products : service_contracts
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21279

    Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Auctions). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compro... Read more

    Affected Products : e-business_suite sourcing
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21278

    Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (component: Award Processes). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged a... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21277

    Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integration). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with ne... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21276

    Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Messages). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to... Read more

    Affected Products : e-business_suite work_in_process
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21275

    Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.2.7-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to c... Read more

    Affected Products : e-business_suite quoting
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21271

    Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Field Service Engineer Portal). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network... Read more

    Affected Products : e-business_suite field_service
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21270

    Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected are 12.2.6-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access v... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21269

    Vulnerability in the Oracle Incentive Compensation product of Oracle E-Business Suite (component: Compensation Plan). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network ac... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21268

    Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.2.11-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access vi... Read more

    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.0

    HIGH
    CVE-2024-4690

    Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and below.... Read more

    Affected Products : application_automation_tools
    • Published: Oct. 16, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21267

    Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported versions that are affected are 12.2.12-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via H... Read more

    Affected Products : e-business_suite cost_management
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21266

    Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP... Read more

    Affected Products : e-business_suite advanced_pricing
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
  • 8.1

    HIGH
    CVE-2024-21265

    Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HT... Read more

    Affected Products : e-business_suite site_hub
    • Published: Oct. 15, 2024
    • Modified: Oct. 21, 2024
Showing 20 of 291551 Results