CVE-2025-21565
- EPSS 0.5%
- Veröffentlicht 21.01.2025 21:15:23
- Zuletzt bearbeitet 29.04.2025 20:01:19
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Install). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to c...
CVE-2025-21556
- EPSS 0.64%
- Veröffentlicht 21.01.2025 21:15:22
- Zuletzt bearbeitet 29.04.2025 20:00:22
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Agile Integration Services). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network ac...
CVE-2025-21560
- EPSS 0.43%
- Veröffentlicht 21.01.2025 21:15:22
- Zuletzt bearbeitet 29.04.2025 20:00:33
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: SDK-Software Development Kit). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network ...
CVE-2024-21287
- EPSS 1.5%
- Veröffentlicht 18.11.2024 22:15:05
- Zuletzt bearbeitet 27.10.2025 17:08:39
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows unauthenticated attack...
CVE-2024-21091
- EPSS 0.45%
- Veröffentlicht 16.04.2024 22:15:29
- Zuletzt bearbeitet 29.05.2025 19:22:56
Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Data Import). The supported version that is affected is 6.2.4.2. Easily exploitable vulnerability allows low privileged attacker w...
CVE-2024-20953
- EPSS 3.93%
- Veröffentlicht 17.02.2024 02:15:49
- Zuletzt bearbeitet 27.10.2025 17:08:41
Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Export). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Or...
CVE-2023-22039
- EPSS 0.36%
- Veröffentlicht 18.07.2023 21:15:13
- Zuletzt bearbeitet 25.08.2026 16:28:27
Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: WebClient). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise...
CVE-2022-25762
- EPSS 8.41%
- Veröffentlicht 13.05.2022 08:15:06
- Zuletzt bearbeitet 25.08.2026 16:28:27
If a web application sends a WebSocket message concurrently with the WebSocket connection closing when running on Apache Tomcat 8.5.0 to 8.5.75 or Apache Tomcat 9.0.0.M1 to 9.0.20, it is possible that the application will continue to use the socket a...
- EPSS 0.9%
- Veröffentlicht 19.04.2022 21:15:17
- Zuletzt bearbeitet 25.08.2026 16:28:27
Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Attachments). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise...
CVE-2022-23437
- EPSS 4.44%
- Veröffentlicht 24.01.2022 15:15:09
- Zuletzt bearbeitet 25.08.2026 16:28:27
There's a vulnerability within the Apache Xerces Java (XercesJ) XML parser when handling specially crafted XML document payloads. This causes, the XercesJ XML parser to wait in an infinite loop, which may sometimes consume system resources for prolon...