Vulnerability index

Browse CVEs

19 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Learning Management MEDIUM 6.3
CVE-2026-62527

Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: Import And Export). Supported versions that are affec…

No fix yet
Fix from $1,600 2026-07-21
Human Capital Management Configuration Workbench MEDIUM 6.3
CVE-2026-62528

Vulnerability in the Oracle HCM Configuration Workbench product of Oracle E-Business Suite (component: Install). Supported versions that are affecte…

No fix yet
Fix from $1,600 2026-07-21
Demantra Demand Management HIGH 8.8
CVE-2026-62516

Vulnerability in the Oracle Demantra Demand Management product of Oracle Supply Chain (component: Product Security). Supported versions that are aff…

Fix: after 12.2.15
Fix from $1,950 2026-07-21
E Business Suite MEDIUM 6.3
CVE-2026-61266

Vulnerability in the Oracle Supply Chain Globalization product of Oracle E-Business Suite (component: Copy Inventory Organization). Supported versio…

Fix: after 12.2.15
Fix from $1,600 2026-07-21
Enterprise Command Center Framework HIGH 8.3
CVE-2026-60582

Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core). The supported version that is…

No fix yet
Fix from $1,950 2026-07-21
Scripting CRITICAL 9.1
CVE-2017-3549EPSS 16%

Vulnerability in the Oracle Scripting component of Oracle E-Business Suite (subcomponent: Scripting Administration). Supported versions that are affe…

Patch available
Fix from $2,300 2017-04-24
MySQL MEDIUM 6.5
CVE-2012-4414

Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x throug…

Fix: after 5.5.28
Fix from $1,600 2013-01-22
Database Server MEDIUM 6.5
CVE-2012-3132

SQL injection vulnerability in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated user…

Mitigation only
Fix from $1,600 2012-08-10
E Business Suite HIGH 7.5
CVE-2007-5766

SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown …

Mitigation only
Fix from $1,950 2007-11-08
Database Server MEDIUM 6.5
CVE-2007-5508EPSS 5%

Multiple SQL injection vulnerabilities in the CTXSYS Intermedia application for the Oracle Text component (CTX_DOC) in Oracle Database 10.1.0.5 and 1…

Mitigation only
Fix from $1,600 2007-10-17
Database Server MEDIUM 6.5
CVE-2007-5511EPSS 32%

SQL injection vulnerability in Workspace Manager for Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.0.8.0 allows attackers to exe…

No fix yet
Fix from $1,600 2007-10-17
Database Server HIGH 7.5
CVE-2007-2113

SQL injection vulnerability in the Upgrade/Downgrade component (DBMS_UPGRADE_INTERNAL) for Oracle Database 10.1.0.5 allows remote authenticated users…

Mitigation only
Fix from $1,950 2007-04-18
Database Server MEDIUM 6.5
CVE-2007-2111

SQL injection vulnerability in the SYS.DBMS_AQADM_SYS package in Oracle Database 9.0.1.5, 9.2.0.7, and 10.1.0.5 allows remote authenticated users to …

Patch available
Fix from $1,600 2007-04-18
Apex MEDIUM 6.0
CVE-2006-7138

SQL injection vulnerability in wwv_flow_utilities.gen_popup_list in the WWV_FLOW_UTILITIES package for Oracle APEX/HTMLDB before 2.2 allows remote au…

Fix: after 2.1
Fix from $1,600 2007-03-07
Database Server MEDIUM 6.5
CVE-2006-1871

SQL injection vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.5 allows remote attackers to execute arbitrary SQL commands via the DELETE_F…

Patch available
Fix from $1,600 2006-04-20
Application Server HIGH 7.5
CVE-2006-0586EPSS 7%

Multiple SQL injection vulnerabilities in Oracle 10g Release 1 before CPU Jan 2006 allow remote attackers to execute arbitrary SQL commands via multi…

Mitigation only
Fix from $1,950 2006-02-08
Oracle10g MEDIUM 5.5
CVE-2006-0269

Unspecified vulnerability in the Streams Capture component of Oracle Database server 10.1.0.5 and 10.2.0.1 has unspecified impact and attack vectors,…

Mitigation only
Fix from $1,600 2006-01-18
Reports HIGH 7.5
CVE-2005-2983

SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in…

No fix yet
Fix from $1,950 2005-09-20
Database Server MEDIUM 6.5
CVE-2004-1339

SQL injection vulnerability in the (1) MDSYS.SDO_GEOM_TRIG_INS1 and (2) MDSYS.SDO_LRS_TRIG_INS default triggers in Oracle 9i and 10g allows remote at…

Patch available
Fix from $1,600 2004-12-23