Oracle E-Business Suite Technology Stack vulnerabilities

3 known vulnerabilities affecting oracle/e-business_suite_technology_stack.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2018-0734MEDIUMCVSS 5.9v0.9.8v1.0.0+1 more2018-10-30
CVE-2018-0734 [MEDIUM] CWE-327 CVE-2018-0734: The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.0.2q (Affected 1.0.2-1.0.2p).
nvd
CVE-2017-10324MEDIUMCVSS 5.3v12.1.3v12.2.3+4 more2017-10-19
CVE-2017-10324 [MEDIUM] CWE-200 CVE-2017-10324: Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subc Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Techno
nvd
CVE-2017-10066MEDIUMCVSS 5.3v12.1.3v12.2.3+4 more2017-10-19
CVE-2017-10066 [MEDIUM] CVE-2017-10066: Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subc Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Technology Sta
nvd