Oracle

Webcenter Portal

158 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 77.8%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:19

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is vulnerability which may allow a remote attacker to allocate 100% CPU time on the target system depending on CPU type or parallel executio...

Exploit
  • EPSS 49.99%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:20

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type information to recreate the formerly written objects. XStr...

Exploit
  • EPSS 46.67%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:22

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type information to recreate the formerly written objects. XStr...

Exploit
  • EPSS 75.98%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:23

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processe...

Exploit
  • EPSS 72.32%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:23

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute commands of the host only by manipulating the proc...

Exploit
  • EPSS 76.37%
  • Veröffentlicht 23.03.2021 00:15:12
  • Zuletzt bearbeitet 07.10.2026 19:17:23

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processe...

Exploit
  • EPSS 4.89%
  • Veröffentlicht 07.01.2021 00:15:15
  • Zuletzt bearbeitet 25.08.2026 16:28:27

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool.

Exploit
  • EPSS 20.93%
  • Veröffentlicht 07.01.2021 00:15:14
  • Zuletzt bearbeitet 25.08.2026 16:28:27

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS.

Exploit
  • EPSS 5.04%
  • Veröffentlicht 07.01.2021 00:15:14
  • Zuletzt bearbeitet 25.08.2026 16:28:27

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS.

Exploit
  • EPSS 5.02%
  • Veröffentlicht 07.01.2021 00:15:14
  • Zuletzt bearbeitet 25.08.2026 16:28:27

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS.