Oracle E-Business Suite vulnerabilities
327 known vulnerabilities affecting oracle/e-business_suite.
Total CVEs
327
CISA KEV
1
actively exploited
Public exploits
5
Exploited in wild
1
Severity breakdown
CRITICAL54HIGH47MEDIUM184LOW42
Vulnerabilities
Page 9 of 17
CVE-2013-0390LOWCVSS 2.1v11.5.10.2v12.0.6+1 more2013-01-17
CVE-2013-0390 [LOW] CVE-2013-0390: Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Bookmarkable Pages.
nvd
CVE-2012-3222MEDIUMCVSS 5.0v11.5.10.2v12.0.6+3 more2012-10-17
CVE-2012-3222 [MEDIUM] CVE-2012-3222: Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 11.5.10.2,
Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect availability via unknown vectors related to Signon.
nvd
CVE-2012-5058MEDIUMCVSS 4.3v11.5.10.2v12.0.6+3 more2012-10-17
CVE-2012-5058 [MEDIUM] CVE-2012-5058: Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to the Web interface.
nvd
CVE-2012-3196MEDIUMCVSS 6.4v11.5.10.2v12.0.6+3 more2012-10-17
CVE-2012-3196 [MEDIUM] CVE-2012-3196: Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10
Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and availability, related to PDF generation.
nvd
CVE-2012-3171MEDIUMCVSS 5.0v11.5.10.2v12.0.6+1 more2012-10-17
CVE-2012-3171 [MEDIUM] CVE-2012-3171: Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business
Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality via unknown vectors related to Autoconfig Templates.
nvd
CVE-2012-3164LOWCVSS 3.5v11.5.10.2v12.0.6+3 more2012-10-17
CVE-2012-3164 [LOW] CVE-2012-3164: Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 11.5.10.2, 12
Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Publish Item.
nvd
CVE-2012-3138MEDIUMCVSS 4.3v11.5.10.2v12.0.6+3 more2012-10-16
CVE-2012-3138 [MEDIUM] CVE-2012-3138: Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Web interface.
nvd
CVE-2012-3139MEDIUMCVSS 4.3v11.5.10.22012-10-16
CVE-2012-3139 [MEDIUM] CVE-2012-3139: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity, related to Signon (local and SSO).
nvd
CVE-2012-3162LOWCVSS 1.7v11.5.10.2v12.0.6+1 more2012-10-16
CVE-2012-3162 [LOW] CVE-2012-3162: Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows local users to affect confidentiality, related to MDS loading.
nvd
CVE-2012-3148LOWCVSS 3.5v12.1.32012-10-16
CVE-2012-3148 [LOW] CVE-2012-3148: Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.3 al
Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.3 allows remote authenticated users to affect integrity, related to Wireless/WAP upload.
nvd
CVE-2012-1715MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2012-07-17
CVE-2012-1715 [MEDIUM] CVE-2012-1715: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity, related to HTML Pages.
nvd
CVE-2012-1730MEDIUMCVSS 4.3v11.5.10.2v12.0.6+1 more2012-07-17
CVE-2012-1730 [MEDIUM] CVE-2012-1730: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Password Management.
nvd
CVE-2012-1727LOWCVSS 3.5v11.5.10.2v12.0.4+4 more2012-07-17
CVE-2012-1727 [LOW] CVE-2012-1727: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.4, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Document Repository.
nvd
CVE-2012-1739LOWCVSS 3.5v11.5.10.2v12.0.4+4 more2012-07-17
CVE-2012-1739 [LOW] CVE-2012-1739: Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite
Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.0.4, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Financials Business Intelligence.
nvd
CVE-2012-0537MEDIUMCVSS 6.4v12.1.32012-05-03
CVE-2012-0537 [MEDIUM] CVE-2012-0537: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity, related to HTML pages.
nvd
CVE-2012-0535MEDIUMCVSS 5.0v12.0.6v12.1.32012-05-03
CVE-2012-0535 [MEDIUM] CVE-2012-0535: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect confidentiality via unknown vectors related to Change Password Page.
nvd
CVE-2012-0513LOWCVSS 2.6v12.0.6v12.1.32012-05-03
CVE-2012-0513 [LOW] CVE-2012-0513: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect integrity, related to REST Services.
nvd
CVE-2012-0542LOWCVSS 2.6v11.5.10.2v12.0.4+4 more2012-05-03
CVE-2012-0542 [LOW] CVE-2012-0542: Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.4, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Runtime Catalog.
nvd
CVE-2012-0078MEDIUMCVSS 4.0v12.1.2v12.1.32012-01-18
CVE-2012-0078 [MEDIUM] CVE-2012-0078: Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Su
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.2 and 12.1.3 allows remote authenticated users to affect confidentiality, related to REST Services (Menu, LOV).
nvd
CVE-2012-0073MEDIUMCVSS 4.3v11.5.10.22012-01-18
CVE-2012-0073 [MEDIUM] CVE-2012-0073: Unspecified vulnerability in the Oracle Forms component in Oracle E-Business Suite 11.5.10.2 allows
Unspecified vulnerability in the Oracle Forms component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors.
nvd