Vulnerability index

Browse CVEs

2,843 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect AuthorizationCWE-863 × clear
Peoplesoft Enterprise HIGH 8.1
CVE-2024-21283

Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported vers…

Fix: after 9.2.50
Fix from $1,950 2024-10-15
Banking Liquidity Management HIGH 7.1
CVE-2024-21284

Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: Reports). The supported vers…

Mitigation only
Fix from $1,950 2024-10-15
Banking Liquidity Management HIGH 7.1
CVE-2024-21285

Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: Reports). The supported vers…

Mitigation only
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21278

Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (component: Award Processes). Support…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21279

Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Auctions). Supported versions that are affected are 12.2.3-12.2.…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
Service Contracts HIGH 8.1
CVE-2024-21280

Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Authoring). Supported versions that are affected are 12…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21282

Vulnerability in the Oracle Financials product of Oracle E-Business Suite (component: Common Components). Supported versions that are affected are 1…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21275

Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.2.7-…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21276

Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Messages). Supported versions that are affected are 12.2.…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21277

Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integration). Supported versions tha…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21267

Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported versions that are affected are …

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21268

Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected a…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21269

Vulnerability in the Oracle Incentive Compensation product of Oracle E-Business Suite (component: Compensation Plan). Supported versions that are af…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21270

Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21271

Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Field Service Engineer Portal). Supported versions that are…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
Oncommand Insight MEDIUM 6.5
CVE-2024-21262

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). Supported versions that are affected are 9.0.0 and prior.…

Fix: after 9.0.0
Fix from $1,600 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21265

Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported versions that are affected are …

Fix: after 12.2.13
Fix from $1,950 2024-10-15
E Business Suite HIGH 8.1
CVE-2024-21266

Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported versions that are affected are 12…

Fix: after 12.2.13
Fix from $1,950 2024-10-15
Vm Virtualbox HIGH 7.5
CVE-2024-21259

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.…

Fix: 7.0.22 / 7.1.2+
Fix from $1,950 2024-10-15
Weblogic Server HIGH 7.5
CVE-2024-21260

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4…

Mitigation only
Fix from $1,950 2024-10-15
Sakai HIGH 8.8
CVE-2024-47876

Sakai is a Collaboration and Learning Environment. Starting in version 23.0 and prior to version 23.2, kernel users created with type roleview can lo…

Fix: 23.2+
Fix from $1,950 2024-10-15
Opencanary HIGH 7.8
CVE-2024-48911

OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file. Prior to version 0.9.4, where the config file i…

Fix: 0.9.4+
Fix from $1,950 2024-10-14
Unclassified HIGH 7.5
CVE-2024-48792

An issue in Hideez com.hideez 2.7.8.3 allows a remote attacker to obtain sensitive information via the firmware update process.

Mitigation only
Fix from $1,950 2024-10-14
Unclassified CRITICAL 9.1
CVE-2024-48772

An issue in C-CHIP (com.cchip.cchipamaota) v.1.2.8 allows a remote attacker to obtain sensitive information via the firmware update process.

Mitigation only
Fix from $2,300 2024-10-11
Unclassified CRITICAL 9.1
CVE-2024-48778

An issue in GIANT MANUFACTURING CO., LTD RideLink (tw.giant.ridelink) 2.0.7 allows a remote attacker to obtain sensitive information via the firmware…

Mitigation only
Fix from $2,300 2024-10-11
Unclassified CRITICAL 9.8
CVE-2024-48784

An Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive information via the firmware up…

Mitigation only
Fix from $2,300 2024-10-11
Unclassified CRITICAL 9.1
CVE-2024-48786

An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive information via the firmware upda…

Mitigation only
Fix from $2,300 2024-10-11
Unclassified CRITICAL 9.1
CVE-2024-48787

An issue in Revic Optics Revic Ops (us.revic.revicops) 1.12.5 allows a remote attacker to obtain sensitive information via the firmware update proces…

Mitigation only
Fix from $2,300 2024-10-11
Unclassified CRITICAL 9.1
CVE-2024-48769

An issue in BURG-WCHTER KG de.burgwachter.keyapp.app 4.5.0 allows a remote attacker to obtain sensitve information via the firmware update process.

Mitigation only
Fix from $2,300 2024-10-11
GitLab HIGH 8.8
CVE-2024-8970

An issue was discovered in GitLab CE/EE affecting all versions starting from 11.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting f…

Fix: 17.2.9 / 17.3.5+
Fix from $1,950 2024-10-11