cbcvebase.

Oracle Application Object Library vulnerabilities

31 known vulnerabilities affecting oracle/application_object_library.

Total CVEs
31
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH6MEDIUM24LOW1

Vulnerabilities

Page 2 of 2
CVE-2019-3027P4MEDIUMCVSS 5.3≥ 12.2.5, ≤ 12.2.92019-10-16
CVE-2019-3027 [MEDIUM] CVE-2019-3027: Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Login Help). Supported versions that are affected are 12.2.5-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful attacks of this vulnerability can re
nvd
CVE-2024-20915P4MEDIUMCVSS 5.3≥ 12.2.3, ≤ 12.2.132024-02-17
CVE-2024-20915 [MEDIUM] CWE-444 CVE-2024-20915: Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Login - SSO). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful attacks of this vulnerab
nvd
CVE-2016-0697P4MEDIUMCVSS 6.0v12.1.3v12.2.3+2 more2016-04-21
CVE-2016-0697 [MEDIUM] CVE-2016-0697: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows local users to affect confidentiality and integrity via unknown vectors.
nvd
CVE-2016-0585P4MEDIUMCVSS 5.0v11.5.10.22016-01-21
CVE-2016-0585 [MEDIUM] CVE-2016-0585: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect availability via vectors related to ICX Error.
nvd
CVE-2016-3434P4MEDIUMCVSS 4.7v12.1.3v12.2.3+2 more2016-04-21
CVE-2016-3434 [MEDIUM] CVE-2016-3434: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Logout.
nvd
CVE-2019-2621P4MEDIUMCVSS 4.7v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2621 [MEDIUM] CVE-2019-2621: Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomp Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Diagnostics). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Librar
nvd
CVE-2020-14840P4MEDIUMCVSS 4.7≥ 12.2.3, ≤ 12.2.10v12.1.32020-10-21
CVE-2020-14840 [MEDIUM] CVE-2020-14840: Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful attacks require hum
nvd
CVE-2020-14554P4MEDIUMCVSS 4.7≥ 12.2.3, ≤ 12.2.8v12.1.32020-07-15
CVE-2020-14554 [MEDIUM] CVE-2020-14554: Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful attacks require human
nvd
CVE-2016-0520P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0520 [MEDIUM] CVE-2016-0520: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to Java APIs.
nvd
CVE-2016-0586P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0586 [MEDIUM] CVE-2016-0586: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to iHelp.
nvd
CVE-2019-2761P4LOWCVSS 3.7≥ 12.2.3, ≤ 12.2.8v12.1.32019-07-23
CVE-2019-2761 [LOW] CVE-2019-2761: Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomp Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Attachments / File Upload). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.8. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful atta
nvd
Oracle Application Object Library vulnerabilities | cvebase