Oracle Crm Technical Foundation vulnerabilities
31 known vulnerabilities affecting oracle/crm_technical_foundation.
Total CVEs
31
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH20MEDIUM11
Vulnerabilities
Page 2 of 2
CVE-2017-3418HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3418 [HIGH] CVE-2017-3418: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
cvelistv5nvd
CVE-2017-3420HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3420 [HIGH] CVE-2017-3420: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
cvelistv5nvd
CVE-2017-3419HIGHCVSS 8.2v12.1.32017-01-27
CVE-2017-3419 [HIGH] CVE-2017-3419: Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcompon
Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: User Interface). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from
cvelistv5nvd
CVE-2016-3491HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3491 [HIGH] CVE-2016-3491: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Wireless Framework. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting
nvd
CVE-2016-3535HIGHCVSS 8.2v12.1.32016-07-21
CVE-2016-3535 [HIGH] CVE-2016-3535: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Remote Launch. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting (XSS)
nvd
CVE-2016-3439HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3439 [HIGH] CVE-2016-3439: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all
Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Call Phone Number Page.
nvd
CVE-2016-3437HIGHCVSS 8.2v12.1.32016-04-21
CVE-2016-3437 [HIGH] CVE-2016-3437: Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 all
Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Person Address Page.
nvd
CVE-2016-0583MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0583 [MEDIUM] CVE-2016-0583: Unspecified vulnerability in the Oracle CRM Technology Foundation component in Oracle E-Business Sui
Unspecified vulnerability in the Oracle CRM Technology Foundation component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to BIS Common Components, a different vulnerability than CVE-2016-0579, CVE-2016-0582, and CVE-2016-0584.
nvd
CVE-2016-0563MEDIUMCVSS 6.4v11.5.10.2v12.1.32016-01-21
CVE-2016-0563 [MEDIUM] CVE-2016-0563: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2 and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Common Techstack.
nvd
CVE-2016-0532MEDIUMCVSS 6.4v11.5.10.2v12.1.3+3 more2016-01-21
CVE-2016-0532 [MEDIUM] CVE-2016-0532: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security Assignments.
nvd
CVE-2016-0533MEDIUMCVSS 4.3v11.5.10.2v12.1.32016-01-21
CVE-2016-0533 [MEDIUM] CVE-2016-0533: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2 and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Messaging.
nvd
← Previous2 / 2