CVE-2019-0227
- EPSS 91.94%
- Veröffentlicht 01.05.2019 21:29:00
- Zuletzt bearbeitet 08.05.2025 18:13:51
A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projects Axis 1.x Subversion repository, legacy users are encouraged to buil...
CVE-2019-2725
- EPSS 99.96%
- Veröffentlicht 26.04.2019 19:29:00
- Zuletzt bearbeitet 01.10.2026 21:17:15
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with ...
CVE-2019-2637
- EPSS 0.98%
- Veröffentlicht 23.04.2019 19:32:52
- Zuletzt bearbeitet 21.11.2024 04:41:15
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: PIA Core Technology). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated ...
CVE-2019-2594
- EPSS 1.13%
- Veröffentlicht 23.04.2019 19:32:50
- Zuletzt bearbeitet 21.11.2024 04:41:10
Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: Application Server). Supported versions that are affected are 8.55, 8.56 and 8.57. Difficult to exploit vulnerability allows low privileg...
CVE-2019-2597
- EPSS 0.98%
- Veröffentlicht 23.04.2019 19:32:50
- Zuletzt bearbeitet 21.11.2024 04:41:11
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: PIA Core Technology). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated ...
CVE-2019-2598
- EPSS 1.25%
- Veröffentlicht 23.04.2019 19:32:50
- Zuletzt bearbeitet 21.11.2024 04:41:11
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: SQR). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows high privileged attacker with ne...
CVE-2019-2586
- EPSS 0.96%
- Veröffentlicht 23.04.2019 19:32:49
- Zuletzt bearbeitet 21.11.2024 04:41:09
Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: RemoteCall). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows low privileged attacke...
CVE-2019-2573
- EPSS 1.04%
- Veröffentlicht 23.04.2019 19:32:48
- Zuletzt bearbeitet 21.11.2024 04:41:08
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Fluid Homepage & Navigation). Supported versions that are affected are 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticate...
CVE-2019-11358
- EPSS 87.22%
- Veröffentlicht 20.04.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:20:56
jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the n...
CVE-2019-0228
- EPSS 9.45%
- Veröffentlicht 17.04.2019 15:29:00
- Zuletzt bearbeitet 21.11.2024 04:16:32
Apache PDFBox 2.0.14 does not properly initialize the XML parser, which allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted XFDF.