CVE-2019-1559
- EPSS 5.05%
- Veröffentlicht 27.02.2019 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:36:48
If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to receive one) then OpenSSL can respond differently to the calling application if a 0 byte record is received with invalid...
CVE-2018-3204
- EPSS 0.97%
- Veröffentlicht 17.10.2018 01:31:22
- Zuletzt bearbeitet 21.11.2024 04:05:26
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Server). The supported version that is affected is 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated...
CVE-2018-8013
- EPSS 1.33%
- Veröffentlicht 24.05.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:13:05
In Apache Batik 1.x before 1.10, when deserializing subclass of `AbstractDocument`, the class takes a string from the inputStream as the class name which then use it to call the no-arg constructor of the class. Fix was to check the class type before ...
CVE-2018-2715
- EPSS 0.75%
- Veröffentlicht 18.01.2018 02:29:24
- Zuletzt bearbeitet 21.11.2024 04:04:18
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: BI Platform Security). Supported versions that are affected are 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allo...
CVE-2017-10068
- EPSS 2.17%
- Veröffentlicht 18.01.2018 02:29:16
- Zuletzt bearbeitet 21.11.2024 03:05:17
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Web Dashboards). The supported version that is affected is 12.2.1.3.0. Easily exploitable vulnerability allows unauthe...
CVE-2017-10163
- EPSS 0.28%
- Veröffentlicht 19.10.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Web General). Supported versions that are affected are 11.1.1.7.0, 11.1.1.9.0, 12.2.1.1.0 and 12.2.1.2.0. Easily explo...
CVE-2017-10060
- EPSS 1.61%
- Veröffentlicht 19.10.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Web General). Supported versions that are affected are 11.1.1.7.0, 11.1.1.9.0, 12.2.1.1.0 and 12.2.1.2.0. Easily explo...
CVE-2017-10058
- EPSS 0.29%
- Veröffentlicht 08.08.2017 15:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Web Administration). Supported versions that are affected are 11.1.1.9.0, 12.2.1.1.0 and 12.2.1.2.0. Easily exploitabl...
CVE-2016-7103
- EPSS 1.38%
- Veröffentlicht 15.03.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.
CVE-2016-3544
- EPSS 0.27%
- Veröffentlicht 21.07.2016 10:13:41
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 11.2.1.0.0 allows remote authenticated users to affect confidentiality and integrity via vectors relate...