cbcvebase.

Oracle Crm Technical Foundation vulnerabilities

31 known vulnerabilities affecting oracle/crm_technical_foundation.

Total CVEs
31
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH20MEDIUM11

Vulnerabilities

Page 1 of 2
CVE-2021-2251P3HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.10v12.1.32021-04-22
CVE-2021-2251 [HIGH] CVE-2021-2251: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Data Source). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability c
nvd
CVE-2021-2092P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2092 [HIGH] CVE-2021-2092: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2085P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2085 [HIGH] CVE-2021-2085: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2084P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.10v12.1.32021-01-20
CVE-2021-2084 [HIGH] CVE-2021-2084: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2021-2099P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.102021-01-20
CVE-2021-2099 [HIGH] CVE-2021-2099: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a
nvd
CVE-2020-14679P3HIGHCVSS 7.5≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14679 [HIGH] CVE-2020-14679: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability
nvd
CVE-2017-3418P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3418 [HIGH] CVE-2017-3418: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2019-2837P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.8v12.1.32019-07-23
CVE-2019-2837 [HIGH] CVE-2019-2837: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require huma
nvd
CVE-2019-2675P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2675 [HIGH] CVE-2019-2675: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2019-2671P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2671 [HIGH] CVE-2019-2671: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2019-2639P3HIGHCVSS 8.2v12.1.3v12.2.3+5 more2019-04-23
CVE-2019-2639 [HIGH] CVE-2019-2639: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Preferences). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Suc
nvd
CVE-2020-14660P3HIGHCVSS 8.2≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14660 [HIGH] CVE-2020-14660: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interac
nvd
CVE-2016-3439P3HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3439 [HIGH] CVE-2016-3439: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Call Phone Number Page.
nvd
CVE-2016-3437P3HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3437 [HIGH] CVE-2016-3437: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Person Address Page.
nvd
CVE-2017-3420P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3420 [HIGH] CVE-2017-3420: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2017-3419P3HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3419 [HIGH] CVE-2017-3419: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
nvd
CVE-2016-3491P3HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3491 [HIGH] CVE-2016-3491: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Wireless Framework. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting
nvd
CVE-2020-14667P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14667 [HIGH] CVE-2020-14667: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2020-14657P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.9v12.1.32020-07-15
CVE-2020-14657 [HIGH] CVE-2020-14657: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interact
nvd
CVE-2016-3535P3HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3535 [HIGH] CVE-2016-3535: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Remote Launch. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting (XSS)
nvd
Oracle Crm Technical Foundation vulnerabilities | cvebase