Oracle Business Intelligence vulnerabilities

85 known vulnerabilities affecting oracle/business_intelligence.

Total CVEs
85
CISA KEV
3
actively exploited
Public exploits
4
Exploited in wild
4
Severity breakdown
CRITICAL6HIGH27MEDIUM48LOW4

Vulnerabilities

Page 1 of 5
CVE-2026-21976HIGHCVSS 7.1v7.6.0.0.0v8.2.0.0.02026-01-20
CVE-2026-21976 [HIGH] CVE-2026-21976: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Oracle Analytics Cloud). Supported versions that are affected are 7.6.0.0.0 and 8.2.0.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Business Intelligence Enterprise Edition executes t
nvd
CVE-2025-53049HIGHCVSS 8.4v7.6.0.0.0v8.2.0.0.02025-10-21
CVE-2025-53049 [HIGH] CWE-284 CVE-2025-53049: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web Administration). Supported versions that are affected are 7.6.0.0.0 and 8.2.0.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise
nvd
CVE-2025-30759MEDIUMCVSS 6.1v7.6.0.0.0v8.2.0.0.0+1 more2025-07-15
CVE-2025-30759 [MEDIUM] CWE-284 CVE-2025-30759: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 7.6.0.0.0, 8.2.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterpr
nvd
CVE-2024-21139MEDIUMCVSS 5.4v7.0.0.0.0v7.6.0.0.0+1 more2024-07-16
CVE-2024-21139 [MEDIUM] CVE-2024-21139: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web Answers). Supported versions that are affected are 7.0.0.0.0, 7.6.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise E
nvd
CVE-2024-21064MEDIUMCVSS 5.4v7.0.0.0.0v12.2.1.4.02024-04-16
CVE-2024-21064 [MEDIUM] CWE-200 CVE-2024-21064: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web Answers). Supported versions that are affected are 7.0.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edit
nvd
CVE-2024-21001MEDIUMCVSS 5.4v7.0.0.0.02024-04-16
CVE-2024-21001 [MEDIUM] CVE-2024-21001: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). The supported version that is affected is 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks
nvd
CVE-2024-21099MEDIUMCVSS 4.3v7.0.0.0.02024-04-16
CVE-2024-21099 [MEDIUM] CWE-125 CVE-2024-21099: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Data Visualization). The supported version that is affected is 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful a
nvd
CVE-2024-20913MEDIUMCVSS 5.4v12.2.1.4.02024-02-17
CVE-2024-20913 [MEDIUM] CVE-2024-20913: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attack
nvd
CVE-2024-20904MEDIUMCVSS 5.0v6.4.0.0.0v12.2.1.4.02024-01-16
CVE-2024-20904 [MEDIUM] CWE-200 CVE-2024-20904: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Pod Admin). Supported versions that are affected are 6.4.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. While t
nvd
CVE-2023-22109MEDIUMCVSS 4.6v6.4.0.0.0v7.0.0.0.0+1 more2023-10-17
CVE-2023-22109 [MEDIUM] CVE-2023-22109: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web Dashboards). Supported versions that are affected are 6.4.0.0.0, 7.0.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterpris
nvd
CVE-2023-22082MEDIUMCVSS 5.4v6.4.0.0.0v7.0.0.0.02023-10-17
CVE-2023-22082 [MEDIUM] CVE-2023-22082: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Pod Admin). Supported versions that are affected are 6.4.0.0.0 and 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attac
nvd
CVE-2023-22021MEDIUMCVSS 4.3v6.4.0.0.0v7.0.0.0.02023-07-18
CVE-2023-22021 [MEDIUM] CVE-2023-22021: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). Supported versions that are affected are 6.4.0.0.0 and 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successfu
nvd
CVE-2023-22011MEDIUMCVSS 5.4v6.4.0.0.0v7.0.0.0.02023-07-18
CVE-2023-22011 [MEDIUM] CVE-2023-22011: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). Supported versions that are affected are 6.4.0.0.0 and 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successfu
nvd
CVE-2023-22013MEDIUMCVSS 4.3v6.4.0.0.0v7.0.0.0.02023-07-18
CVE-2023-22013 [MEDIUM] CVE-2023-22013: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). Supported versions that are affected are 6.4.0.0.0 and 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successfu
nvd
CVE-2023-22027MEDIUMCVSS 4.3v7.0.0.0.02023-07-18
CVE-2023-22027 [MEDIUM] CVE-2023-22027: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). The supported version that is affected is 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks of
nvd
CVE-2023-22012MEDIUMCVSS 4.3v7.0.0.0.02023-07-18
CVE-2023-22012 [MEDIUM] CVE-2023-22012: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). The supported version that is affected is 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks of
nvd
CVE-2023-22061MEDIUMCVSS 5.4v6.4.0.0.02023-07-18
CVE-2023-22061 [MEDIUM] CVE-2023-22061: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Visual Analyzer). The supported version that is affected is 6.4.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks requ
nvd
CVE-2023-22020MEDIUMCVSS 5.4v6.4.0.0.0v7.0.0.0.02023-07-18
CVE-2023-22020 [MEDIUM] CVE-2023-22020: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). Supported versions that are affected are 6.4.0.0.0 and 7.0.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successfu
nvd
CVE-2023-21910MEDIUMCVSS 6.5v6.4.0.0.0v12.2.1.4.02023-04-18
CVE-2023-21910 [MEDIUM] CVE-2023-21910: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General). Supported versions that are affected are 6.4.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Suc
nvd
CVE-2023-21965MEDIUMCVSS 5.7v6.4.0.0.02023-04-18
CVE-2023-21965 [MEDIUM] CVE-2023-21965: Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Server). The supported version that is affected is 6.4.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks req
nvd