Vulnerability index

Browse CVEs

19 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
MEDIUM 6.3 CVE-2026-62527 Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: Import And Export). Supported versions that are affec… Learning Management No fix yet Fix from $1,6002026-07-21 MEDIUM 6.3 CVE-2026-62528 Vulnerability in the Oracle HCM Configuration Workbench product of Oracle E-Business Suite (component: Install). Supported versions that are affecte… Human Capital Management Configuration Workbench No fix yet Fix from $1,6002026-07-21 HIGH 8.8 CVE-2026-62516 Vulnerability in the Oracle Demantra Demand Management product of Oracle Supply Chain (component: Product Security). Supported versions that are aff… Demantra Demand Management after 12.2.15 Fix from $1,9502026-07-21 MEDIUM 6.3 CVE-2026-61266 Vulnerability in the Oracle Supply Chain Globalization product of Oracle E-Business Suite (component: Copy Inventory Organization). Supported versio… E Business Suite after 12.2.15 Fix from $1,6002026-07-21 HIGH 8.3 CVE-2026-60582 Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core). The supported version that is… Enterprise Command Center Framework No fix yet Fix from $1,9502026-07-21 CRITICAL 9.1 CVE-2017-3549EPSS 16% Vulnerability in the Oracle Scripting component of Oracle E-Business Suite (subcomponent: Scripting Administration). Supported versions that are affe… Scripting Patch available Fix from $2,3002017-04-24 MEDIUM 6.5 CVE-2012-4414 Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x throug… MySQL after 5.5.28 Fix from $1,6002013-01-22 MEDIUM 6.5 CVE-2012-3132 SQL injection vulnerability in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated user… Database Server Mitigation only Fix from $1,6002012-08-10 HIGH 7.5 CVE-2007-5766 SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown … E Business Suite Mitigation only Fix from $1,9502007-11-08 MEDIUM 6.5 CVE-2007-5508EPSS 5% Multiple SQL injection vulnerabilities in the CTXSYS Intermedia application for the Oracle Text component (CTX_DOC) in Oracle Database 10.1.0.5 and 1… Database Server Mitigation only Fix from $1,6002007-10-17 MEDIUM 6.5 CVE-2007-5511EPSS 32% SQL injection vulnerability in Workspace Manager for Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.0.8.0 allows attackers to exe… Database Server No fix yet Fix from $1,6002007-10-17 HIGH 7.5 CVE-2007-2113 SQL injection vulnerability in the Upgrade/Downgrade component (DBMS_UPGRADE_INTERNAL) for Oracle Database 10.1.0.5 allows remote authenticated users… Database Server Mitigation only Fix from $1,9502007-04-18 MEDIUM 6.5 CVE-2007-2111 SQL injection vulnerability in the SYS.DBMS_AQADM_SYS package in Oracle Database 9.0.1.5, 9.2.0.7, and 10.1.0.5 allows remote authenticated users to … Database Server Patch available Fix from $1,6002007-04-18 MEDIUM 6.0 CVE-2006-7138 SQL injection vulnerability in wwv_flow_utilities.gen_popup_list in the WWV_FLOW_UTILITIES package for Oracle APEX/HTMLDB before 2.2 allows remote au… Apex after 2.1 Fix from $1,6002007-03-07 MEDIUM 6.5 CVE-2006-1871 SQL injection vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.5 allows remote attackers to execute arbitrary SQL commands via the DELETE_F… Database Server Patch available Fix from $1,6002006-04-20 HIGH 7.5 CVE-2006-0586EPSS 7% Multiple SQL injection vulnerabilities in Oracle 10g Release 1 before CPU Jan 2006 allow remote attackers to execute arbitrary SQL commands via multi… Application Server Mitigation only Fix from $1,9502006-02-08 MEDIUM 5.5 CVE-2006-0269 Unspecified vulnerability in the Streams Capture component of Oracle Database server 10.1.0.5 and 10.2.0.1 has unspecified impact and attack vectors,… Oracle10g Mitigation only Fix from $1,6002006-01-18 HIGH 7.5 CVE-2005-2983 SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in… Reports No fix yet Fix from $1,9502005-09-20 MEDIUM 6.5 CVE-2004-1339 SQL injection vulnerability in the (1) MDSYS.SDO_GEOM_TRIG_INS1 and (2) MDSYS.SDO_LRS_TRIG_INS default triggers in Oracle 9i and 10g allows remote at… Database Server Patch available Fix from $1,6002004-12-23