Oracle Adaptive Access Manager vulnerabilities
4 known vulnerabilities affecting oracle/adaptive_access_manager.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-2018HIGHCVSS 8.3v11.1.2.3.02021-01-20
CVE-2021-2018 [HIGH] CVE-2021-2018: Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versi
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 18c and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks require human interaction from a person other than the attack
nvd
CVE-2018-2770HIGHCVSS 7.6v11.1.2.3.02018-04-19
CVE-2018-2770 [HIGH] CVE-2018-2770: Vulnerability in the Oracle Adaptive Access Manager component of Oracle Fusion Middleware (subcompon
Vulnerability in the Oracle Adaptive Access Manager component of Oracle Fusion Middleware (subcomponent: OAAM Admin). The supported version that is affected is 11.1.2.3.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Adaptive Access Manager. Successful attacks require human interaction from a
nvd
CVE-2018-2587MEDIUMCVSS 6.5v11.1.2.3.02018-04-19
CVE-2018-2587 [MEDIUM] CVE-2018-2587: Vulnerability in the Oracle Access Manager component of Oracle Fusion Middleware (subcomponent: Web
Vulnerability in the Oracle Access Manager component of Oracle Fusion Middleware (subcomponent: Web Server Plugin). Supported versions that are affected are 10.1.4.3.0, 11.1.2.3.0 and 12.2.1.3.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Access Manager. Successful attacks of this vulner
nvd
CVE-2016-8610HIGHCVSS 7.5v11.1.2.3.02017-11-13
CVE-2016-8610 [HIGH] CWE-400 CVE-2016-8610: A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the w
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake. A remote attacker could use this flaw to make a TLS/SSL server consume an excessive amount of CPU and fail to accept connections from other clients.
nvd