CVE-2021-35587
- EPSS 96.28%
- Veröffentlicht 19.01.2022 12:15:09
- Zuletzt bearbeitet 27.10.2025 17:08:36
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: OpenSSO Agent). Supported versions that are affected are 11.1.2.3.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacke...
- EPSS 1.59%
- Veröffentlicht 21.07.2021 15:15:25
- Zuletzt bearbeitet 21.11.2024 06:02:57
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Rest interfaces for Access Mgr). The supported version that is affected is 11.1.2.3.0. Easily exploitable vulnerability allows high privileged attacker with ne...
CVE-2021-29425
- EPSS 10.23%
- Veröffentlicht 13.04.2021 07:15:12
- Zuletzt bearbeitet 07.10.2026 19:17:25
In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../foo", or "\\..\foo", the result would be the same value, thus possibly providing access to files in the parent directory, but ...
CVE-2020-2747
- EPSS 0.71%
- Veröffentlicht 15.04.2020 14:15:24
- Zuletzt bearbeitet 21.11.2024 05:26:09
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: SSO Engine). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker with network a...
CVE-2020-2745
- EPSS 1.41%
- Veröffentlicht 15.04.2020 14:15:24
- Zuletzt bearbeitet 21.11.2024 05:26:08
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Federation). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network ...
CVE-2020-2740
- EPSS 0.76%
- Veröffentlicht 15.04.2020 14:15:23
- Zuletzt bearbeitet 21.11.2024 05:26:07
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker wit...
CVE-2020-2555
- EPSS 97.12%
- Veröffentlicht 15.01.2020 17:15:17
- Zuletzt bearbeitet 27.10.2025 17:08:59
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Supported versions that are affected are 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows una...
CVE-2019-10219
- EPSS 2.17%
- Veröffentlicht 08.11.2019 15:15:11
- Zuletzt bearbeitet 25.08.2026 16:28:27
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
- EPSS 22.15%
- Veröffentlicht 19.04.2018 02:29:07
- Zuletzt bearbeitet 21.11.2024 04:04:40
Vulnerability in the Oracle Access Manager component of Oracle Fusion Middleware (subcomponent: Authentication Engine). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Difficult to exploit vulnerability allows unauthenticated atta...
CVE-2018-2739
- EPSS 2.33%
- Veröffentlicht 19.04.2018 02:29:00
- Zuletzt bearbeitet 21.11.2024 04:04:21
Vulnerability in the Oracle Access Manager component of Oracle Fusion Middleware (subcomponent: Web Server Plugin). Supported versions that are affected are 10.1.4.3.0, 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticate...