cbcvebase.

Oracle Communications Operations Monitor vulnerabilities

45 known vulnerabilities affecting oracle/communications_operations_monitor.

Total CVEs
45
CISA KEV
1
actively exploited
Public exploits
6
Exploited in wild
2
Severity breakdown
CRITICAL7HIGH19MEDIUM19

Vulnerabilities

Page 3 of 3
CVE-2022-21396P4MEDIUMCVSS 5.4v3.4v4.2+3 more2022-01-19
CVE-2022-21396 [MEDIUM] CVE-2022-21396: Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (comp Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Engine). Supported versions that are affected are 3.4, 4.2, 4.3, 4.4 and 5.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Communications Operations Monitor. Successful atta
nvd
CVE-2022-21398P4MEDIUMCVSS 5.4v3.4v4.2+3 more2022-01-19
CVE-2022-21398 [MEDIUM] CVE-2022-21398: Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (comp Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Engine). Supported versions that are affected are 3.4, 4.2, 4.3, 4.4 and 5.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Communications Operations Monitor. Successful atta
nvd
CVE-2022-24736P4MEDIUMCVSS 5.5v4.3v4.4+1 more2022-04-27
CVE-2022-24736 [MEDIUM] CWE-476 CVE-2022-24736: Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem
nvd
CVE-2021-32672P4MEDIUMCVSS 4.3v4.3v4.4+1 more2021-10-04
CVE-2021-32672 [MEDIUM] CWE-125 CVE-2021-32672: Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malformed requests that cause the debugger’s protocol parser to read data beyond the actual buffer. This issue affects all versions of Redis with Lua debugging support (3.2 or newer). The problem is fixed in versions 6.2.6, 6.0.16 and
nvd
CVE-2022-21402P4MEDIUMCVSS 4.8v3.4v4.2+3 more2022-01-19
CVE-2022-21402 [MEDIUM] CVE-2022-21402: Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (comp Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Engine). Supported versions that are affected are 3.4, 4.2, 4.3, 4.4 and 5.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Communications Operations Monitor. Successful att
nvd
Oracle Communications Operations Monitor vulnerabilities | cvebase