CVE-2013-1505
published 2013-04-17CVE-2013-1505: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 through 3.1.0 allows remote authenticated…
PriorityP421medium4.9CVSS 2.0
AVNACMAuSCPIPAN
EPSS
0.91%
55.6th percentile
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 through 3.1.0 allows remote authenticated users to affect confidentiality and integrity via vectors related to BASE.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | financial_services_software | — | — |
| oracle | financial_services_software | — | — |
CVSS provenance
nvdv2.04.9MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:N
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2x8p-vvqw-ghh6: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2
ghsa_unreviewed·2022-05-17
CVE-2013-1505 [MEDIUM] GHSA-2x8p-vvqw-ghh6: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 through 3.1.0 allows remote authenticated users to affect confidentiality and integrity via vectors related to BASE.
Red Hat
Mozilla: SVG filters information disclosure through feDisplacementMap (MFSA 2014-28)
vendor_redhat·2014-03-18·CVSS 4.3
CVE-2014-1505 [MEDIUM] Mozilla: SVG filters information disclosure through feDisplacementMap (MFSA 2014-28)
Mozilla: SVG filters information disclosure through feDisplacementMap (MFSA 2014-28)
The SVG filter implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive displacement-correlation information, and possibly bypass the Same Origin Policy and read text from a different domain, via a timing attack involving feDisplacementMap elements, a related issue to CVE-2013-1693.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-04-17
Published