Vulnerability index

Browse CVEs

2,843 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect AuthorizationCWE-863 × clear
HIGH 8.1 CVE-2024-21283 Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payroll for Core). Supported vers… Peoplesoft Enterprise after 9.2.50 Fix from $1,9502024-10-15 HIGH 7.1 CVE-2024-21284 Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: Reports). The supported vers… Banking Liquidity Management Mitigation only Fix from $1,9502024-10-15 HIGH 7.1 CVE-2024-21285 Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: Reports). The supported vers… Banking Liquidity Management Mitigation only Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21278 Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (component: Award Processes). Support… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21279 Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Auctions). Supported versions that are affected are 12.2.3-12.2.… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21280 Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Authoring). Supported versions that are affected are 12… Service Contracts after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21282 Vulnerability in the Oracle Financials product of Oracle E-Business Suite (component: Common Components). Supported versions that are affected are 1… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21275 Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.2.7-… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21276 Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Messages). Supported versions that are affected are 12.2.… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21277 Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integration). Supported versions tha… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21267 Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported versions that are affected are … E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21268 Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected a… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21269 Vulnerability in the Oracle Incentive Compensation product of Oracle E-Business Suite (component: Compensation Plan). Supported versions that are af… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21270 Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21271 Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Field Service Engineer Portal). Supported versions that are… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 MEDIUM 6.5 CVE-2024-21262 Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). Supported versions that are affected are 9.0.0 and prior.… Oncommand Insight after 9.0.0 Fix from $1,6002024-10-15 HIGH 8.1 CVE-2024-21265 Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported versions that are affected are … E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 8.1 CVE-2024-21266 Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported versions that are affected are 12… E Business Suite after 12.2.13 Fix from $1,9502024-10-15 HIGH 7.5 CVE-2024-21259 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.… Vm Virtualbox 7.0.22 / 7.1.2+ Fix from $1,9502024-10-15 HIGH 7.5 CVE-2024-21260 Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4… Weblogic Server Mitigation only Fix from $1,9502024-10-15 HIGH 8.8 CVE-2024-47876 Sakai is a Collaboration and Learning Environment. Starting in version 23.0 and prior to version 23.2, kernel users created with type roleview can lo… Sakai 23.2+ Fix from $1,9502024-10-15 HIGH 7.8 CVE-2024-48911 OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file. Prior to version 0.9.4, where the config file i… Opencanary 0.9.4+ Fix from $1,9502024-10-14 HIGH 7.5 CVE-2024-48792 An issue in Hideez com.hideez 2.7.8.3 allows a remote attacker to obtain sensitive information via the firmware update process. Mitigation only Fix from $1,9502024-10-14 CRITICAL 9.1 CVE-2024-48772 An issue in C-CHIP (com.cchip.cchipamaota) v.1.2.8 allows a remote attacker to obtain sensitive information via the firmware update process. Mitigation only Fix from $2,3002024-10-11 CRITICAL 9.1 CVE-2024-48778 An issue in GIANT MANUFACTURING CO., LTD RideLink (tw.giant.ridelink) 2.0.7 allows a remote attacker to obtain sensitive information via the firmware… Mitigation only Fix from $2,3002024-10-11 CRITICAL 9.8 CVE-2024-48784 An Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive information via the firmware up… Mitigation only Fix from $2,3002024-10-11 CRITICAL 9.1 CVE-2024-48786 An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive information via the firmware upda… Mitigation only Fix from $2,3002024-10-11 CRITICAL 9.1 CVE-2024-48787 An issue in Revic Optics Revic Ops (us.revic.revicops) 1.12.5 allows a remote attacker to obtain sensitive information via the firmware update proces… Mitigation only Fix from $2,3002024-10-11 CRITICAL 9.1 CVE-2024-48769 An issue in BURG-WCHTER KG de.burgwachter.keyapp.app 4.5.0 allows a remote attacker to obtain sensitve information via the firmware update process. Mitigation only Fix from $2,3002024-10-11 HIGH 8.8 CVE-2024-8970 An issue was discovered in GitLab CE/EE affecting all versions starting from 11.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting f… GitLab 17.2.9 / 17.3.5+ Fix from $1,9502024-10-11