cbcvebase.

Oracle E-Business Suite vulnerabilities

345 known vulnerabilities affecting oracle/e-business_suite.

Total CVEs
345
CISA KEV
2
actively exploited
Public exploits
6
Exploited in wild
5
Severity breakdown
CRITICAL56HIGH56MEDIUM191LOW42

Vulnerabilities

Page 13 of 18
CVE-2002-1666P4MEDIUMCVSS 5.0v11.1v11.2+4 more2002-12-31
CVE-2002-1666 [MEDIUM] CVE-2002-1666: Unknown vulnerability in Oracle E-Business Suite 11i.1 through 11i.6 allows remote attackers to exec Unknown vulnerability in Oracle E-Business Suite 11i.1 through 11i.6 allows remote attackers to execute unauthorized PL/SQL procedures by modifying the Oracle Applications URL.
nvd
CVE-2008-3988P4MEDIUMCVSS 5.0v10.2v11.5+1 more2008-10-14
CVE-2008-3988 [MEDIUM] CVE-2008-3988: Unspecified vulnerability in the iSupplier Portal component in Oracle E-Business Suite 11.5.10.2 and Unspecified vulnerability in the iSupplier Portal component in Oracle E-Business Suite 11.5.10.2 and 12.0.4 allows remote attackers to affect confidentiality via unknown vectors.
nvd
CVE-2008-3998P4MEDIUMCVSS 4.9v12.0.42008-10-14
CVE-2008-3998 [MEDIUM] CVE-2008-3998: Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 12.0.4 allows re Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 12.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
nvd
CVE-2009-3393P4MEDIUMCVSS 4.3v11.5.10.22009-10-22
CVE-2009-3393 [MEDIUM] CVE-2009-3393: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors.
nvd
CVE-2009-3397P4MEDIUMCVSS 4.3v12.0.6v12.1.12009-10-22
CVE-2009-3397 [MEDIUM] CVE-2009-3397: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.1 allows remote attackers to affect confidentiality via unknown vectors.
nvd
CVE-2011-2302P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+2 more2011-10-18
CVE-2011-2302 [MEDIUM] CVE-2011-2302: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Single Sign On.
nvd
CVE-2011-3513P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+2 more2011-10-18
CVE-2011-3513 [MEDIUM] CVE-2011-3513: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3 allows remote attackers to affect integrity, related to HTML Pages.
nvd
CVE-2010-2418P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2010-10-14
CVE-2010-2418 [MEDIUM] CVE-2010-2418: Unspecified vulnerability in the Oracle Territory Management component in Oracle E-Business Suite 11 Unspecified vulnerability in the Oracle Territory Management component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors.
nvd
CVE-2010-3504P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2010-10-14
CVE-2010-3504 [MEDIUM] CVE-2010-3504: Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect integrity via unknown vectors.
nvd
CVE-2010-2416P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2010-10-14
CVE-2010-2416 [MEDIUM] CVE-2010-2416: Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors.
nvd
CVE-2016-0509P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0509 [MEDIUM] CVE-2016-0509: Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 11.5. Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AP Web Utilities.
nvd
CVE-2016-0521P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0521 [MEDIUM] CVE-2016-0521: Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 11.5.10.2 Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Redirection.
nvd
CVE-2016-0513P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0513 [MEDIUM] CVE-2016-0513: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to BIS Common Components.
nvd
CVE-2013-3778P4MEDIUMCVSS 4.3v12.0.6v12.1.32013-07-17
CVE-2013-3778 [MEDIUM] CVE-2013-3778: Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Help.
nvd
CVE-2014-6550P4MEDIUMCVSS 4.3v11.5.10.22014-10-15
CVE-2014-6550 [MEDIUM] CVE-2014-6550: Unspecified vulnerability in the Oracle Applications Object Library component in Oracle E-Business S Unspecified vulnerability in the Oracle Applications Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to iHelp.
nvd
CVE-2014-6561P4MEDIUMCVSS 4.3v12.0.4v12.0.6+6 more2014-10-15
CVE-2014-6561 [MEDIUM] CVE-2014-6561: Unspecified vulnerability in the Oracle Payments component in Oracle E-Business Suite 12.0.4, 12.0.6 Unspecified vulnerability in the Oracle Payments component in Oracle E-Business Suite 12.0.4, 12.0.6, 12.1.1, 12.1.2, 12.1.3, 12.2.2, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality via unknown vectors related to Separate Remittance Advice.
nvd
CVE-2012-0073P4MEDIUMCVSS 4.3v11.5.10.22012-01-18
CVE-2012-0073 [MEDIUM] CVE-2012-0073: Unspecified vulnerability in the Oracle Forms component in Oracle E-Business Suite 11.5.10.2 allows Unspecified vulnerability in the Oracle Forms component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors.
nvd
CVE-2013-0377P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2013-01-17
CVE-2013-0377 [MEDIUM] CVE-2013-0377: Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Client System Analyzer.
nvd
CVE-2013-0376P4MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2013-01-17
CVE-2013-0376 [MEDIUM] CVE-2013-0376: Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Diagnostics.
nvd
CVE-2001-0528P4HIGHCVSS 7.2v11i2001-08-14
CVE-2001-0528 [HIGH] CVE-2001-0528: Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 7.x includes a deb Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 7.x includes a debug version of FNDPUB11I.DLL, which logs the APPS schema password in cleartext in a debug file, which allows local users to obtain the password and gain privileges.
nvd
Oracle E-Business Suite vulnerabilities | cvebase