CVE-2023-21915
- EPSS 0.34%
- Published 18.04.2023 20:15:12
- Last modified 21.11.2024 07:43:53
Vulnerability in the Oracle Banking Payments product of Oracle Financial Services Applications (component: Book/Internal Transfer). Supported versions that are affected are 14.5, 14.6 and 14.7. Easily exploitable vulnerability allows low privileged...
CVE-2022-21475
- EPSS 0.38%
- Published 19.04.2022 21:15:17
- Last modified 21.11.2024 06:44:47
Vulnerability in the Oracle Banking Payments product of Oracle Financial Services Applications (component: Infrastructure). The supported version that is affected is 14.5. Difficult to exploit vulnerability allows low privileged attacker with network...
CVE-2021-45105
- EPSS 65.66%
- Published 18.12.2021 12:15:07
- Last modified 21.11.2024 06:31:58
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service wh...
CVE-2021-41973
- EPSS 0.62%
- Published 01.11.2021 09:15:09
- Last modified 21.11.2024 06:27:00
In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Pleas...
CVE-2021-36090
- EPSS 0.28%
- Published 13.07.2021 08:15:07
- Last modified 21.11.2024 06:13:08
When reading a specially crafted ZIP archive, Compress can be made to allocate large amounts of memory that finally leads to an out of memory error even for very small inputs. This could be used to mount a denial of service attack against services th...
CVE-2021-35517
- EPSS 0.28%
- Published 13.07.2021 08:15:07
- Last modified 21.11.2024 06:12:25
When reading a specially crafted TAR archive, Compress can be made to allocate large amounts of memory that finally leads to an out of memory error even for very small inputs. This could be used to mount a denial of service attack against services th...
CVE-2021-35515
- EPSS 0.11%
- Published 13.07.2021 08:15:07
- Last modified 21.11.2024 06:12:25
When reading a specially crafted 7Z archive, the construction of the list of codecs that decompress an entry can result in an infinite loop. This could be used to mount a denial of service attack against services that use Compress' sevenz package.
CVE-2021-30129
- EPSS 0.23%
- Published 12.07.2021 12:15:07
- Last modified 21.11.2024 06:03:21
A vulnerability in sshd-core of Apache Mina SSHD allows an attacker to overflow the server causing an OutOfMemory error. This issue affects the SFTP and port forwarding features of Apache Mina SSHD version 2.0.0 and later versions. It was addressed i...
CVE-2020-14896
- EPSS 0.4%
- Published 21.10.2020 15:15:26
- Last modified 21.11.2024 05:04:26
Vulnerability in the Oracle Banking Payments product of Oracle Financial Services Applications (component: Core). Supported versions that are affected are 14.1.0-14.4.0. Easily exploitable vulnerability allows low privileged attacker with network acc...
CVE-2020-2714
- EPSS 0.3%
- Published 15.01.2020 17:15:27
- Last modified 21.11.2024 05:26:04
Vulnerability in the Oracle Banking Payments product of Oracle Financial Services Applications (component: Core). Supported versions that are affected are 14.1.0-14.3.0. Easily exploitable vulnerability allows low privileged attacker with network acc...