Oracle Crm Technical Foundation vulnerabilities
31 known vulnerabilities affecting oracle/crm_technical_foundation.
Total CVEs
31
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH20MEDIUM11
Vulnerabilities
Page 1 of 2
CVE-2021-2251P3HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.10v12.1.32021-04-22
CVE-2021-2251 [HIGH] CVE-2021-2251: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Data Source). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability c
nvd
CVE-2021-2092P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2092 [HIGH] CVE-2021-2092: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2085P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2085 [HIGH] CVE-2021-2085: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2084P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2084 [HIGH] CVE-2021-2084: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2099P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.102021-01-20
CVE-2021-2099 [HIGH] CVE-2021-2099: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a
nvd
CVE-2020-14679P3HIGHCVSS 7.5≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14679 [HIGH] CVE-2020-14679: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability
nvd
CVE-2017-3418P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3418 [HIGH] CVE-2017-3418: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2019-2837P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.8v12.1.32019-07-23
CVE-2019-2837 [HIGH] CVE-2019-2837: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require huma
nvd
CVE-2019-2675P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2675 [HIGH] CVE-2019-2675: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2019-2671P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2671 [HIGH] CVE-2019-2671: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2019-2639P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2639 [HIGH] CVE-2019-2639: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2020-14660P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14660 [HIGH] CVE-2020-14660: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interac
nvd
CVE-2016-3439P3HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3439 [HIGH] CVE-2016-3439: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all
Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Call Phone Number Page.
nvd
CVE-2016-3437P3HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3437 [HIGH] CVE-2016-3437: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all
Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Person Address Page.
nvd
CVE-2017-3420P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3420 [HIGH] CVE-2017-3420: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2017-3419P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3419 [HIGH] CVE-2017-3419: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2016-3491P3HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3491 [HIGH] CVE-2016-3491: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Wireless Framework. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting
nvd
CVE-2020-14667P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14667 [HIGH] CVE-2020-14667: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2020-14657P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14657 [HIGH] CVE-2020-14657: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component:
Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2016-3535P3HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3535 [HIGH] CVE-2016-3535: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Remote Launch. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting (XSS)
nvd
1 / 2Next →