Oracle E-Business Suite vulnerabilities
327 known vulnerabilities affecting oracle/e-business_suite.
Total CVEs
327
CISA KEV
1
actively exploited
Public exploits
5
Exploited in wild
1
Severity breakdown
CRITICAL54HIGH47MEDIUM184LOW42
Vulnerabilities
Page 4 of 17
CVE-2016-0511MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0511 [MEDIUM] CVE-2016-0511: Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Common Components, a different vulnerability than CVE-2016-0547, CVE-2016-0548, and CVE-2016-0549.
nvd
CVE-2016-0528MEDIUMCVSS 6.4v12.1.1v12.1.2+4 more2016-01-21
CVE-2016-0528 [MEDIUM] CVE-2016-0528: Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business
Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to User GUI, a different vulnerability than CVE-2016-0527, CVE-2016-0529, and CVE-2016-0530.
nvd
CVE-2016-0509MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0509 [MEDIUM] CVE-2016-0509: Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 11.5.
Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AP Web Utilities.
nvd
CVE-2016-0519MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0519 [MEDIUM] CVE-2016-0519: Unspecified vulnerability in the Oracle iReceivables component in Oracle E-Business Suite 11.5.10.2
Unspecified vulnerability in the Oracle iReceivables component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AR Web Utilities, a different vulnerability than CVE-2016-0507.
nvd
CVE-2016-0457MEDIUMCVSS 5.0v12.1v12.22016-01-21
CVE-2016-0457 [MEDIUM] CVE-2016-0457: Unspecified vulnerability in the Application Mgmt Pack for E-Business Suite component in Oracle E-Bu
Unspecified vulnerability in the Application Mgmt Pack for E-Business Suite component in Oracle E-Business Suite 12.1 and 12.2 allows remote attackers to affect confidentiality via vectors related to REST Framework, a different vulnerability than CVE-2016-0456. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-part
nvd
CVE-2016-0510MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0510 [MEDIUM] CVE-2016-0510: Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Business Views Catalog.
nvd
CVE-2016-0556MEDIUMCVSS 5.5v11.5.10.2v12.1.1+2 more2016-01-21
CVE-2016-0556 [MEDIUM] CVE-2016-0556: Unspecified vulnerability in the Oracle Advanced Collections component in Oracle E-Business Suite 11
Unspecified vulnerability in the Oracle Advanced Collections component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Administration, a different vulnerability than CVE-2016-0557.
nvd
CVE-2016-0521MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0521 [MEDIUM] CVE-2016-0521: Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 11.5.10.2
Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Redirection.
nvd
CVE-2016-0514MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0514 [MEDIUM] CVE-2016-0514: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via vectors related to BIS Common Components, a different vulnerability than CVE-2016-0515.
nvd
CVE-2016-0512MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0512 [MEDIUM] CVE-2016-0512: Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10
Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Self Service - Common Modules.
nvd
CVE-2016-0459MEDIUMCVSS 4.0v11.5.10.2v12.1.3+3 more2016-01-21
CVE-2016-0459 [MEDIUM] CVE-2016-0459: Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote authenticated users to affect integrity via unknown vectors related to Popup Windows.
nvd
CVE-2016-0526MEDIUMCVSS 5.0v11.5.10.2v12.1.3+3 more2016-01-21
CVE-2016-0526 [MEDIUM] CVE-2016-0526: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via unknown vectors related to Wireless Framework.
nvd
CVE-2016-0513MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0513 [MEDIUM] CVE-2016-0513: Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suit
Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to BIS Common Components.
nvd
CVE-2016-0518MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0518 [MEDIUM] CVE-2016-0518: Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10
Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to General utilities, a different vulnerability than CVE-2016-0517.
nvd
CVE-2016-0507MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0507 [MEDIUM] CVE-2016-0507: Unspecified vulnerability in the Oracle iReceivables component in Oracle E-Business Suite 11.5.10.2
Unspecified vulnerability in the Oracle iReceivables component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AR Web Utilities, a different vulnerability than CVE-2016-0519.
nvd
CVE-2016-0524MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0524 [MEDIUM] CVE-2016-0524: Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11
Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Work Provider Administration.
nvd
CVE-2016-0527MEDIUMCVSS 6.4v12.1.1v12.1.2+4 more2016-01-21
CVE-2016-0527 [MEDIUM] CVE-2016-0527: Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business
Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to User GUI, a different vulnerability than CVE-2016-0528, CVE-2016-0529, and CVE-2016-0530.
nvd
CVE-2016-0517MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0517 [MEDIUM] CVE-2016-0517: Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10
Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to General utilities, a different vulnerability than CVE-2016-0518.
nvd
CVE-2016-0516MEDIUMCVSS 6.4v11.5.10.22016-01-21
CVE-2016-0516 [MEDIUM] CVE-2016-0516: Unspecified vulnerability in the Oracle Quality component in Oracle E-Business Suite 11.5.10.2 allow
Unspecified vulnerability in the Oracle Quality component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to QA / Order Management Integration.
nvd
CVE-2016-0575MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0575 [MEDIUM] CVE-2016-0575: Unspecified vulnerability in the Oracle Learning Management component in Oracle E-Business Suite 11.
Unspecified vulnerability in the Oracle Learning Management component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to OTA Self Service.
nvd