Oracle Field Service vulnerabilities

8 known vulnerabilities affecting oracle/field_service.

Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2021-2362HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.32021-07-21
CVE-2021-2362 [HIGH] CVE-2021-2362: Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Field Service. Successful attacks of this vulnerability can result in unauthorized creation, d
nvd
CVE-2020-2603MEDIUMCVSS 6.1≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.92020-01-15
CVE-2020-2603 [MEDIUM] CVE-2020-2603: Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Field Service. Successful attacks require human interaction from a perso
nvd
CVE-2019-2930MEDIUMCVSS 4.7≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.82019-10-16
CVE-2019-2930 [MEDIUM] CVE-2019-2930: Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Wireless). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Field Service. Successful attacks require human interaction from a person
nvd
CVE-2019-2828CRITICALCVSS 9.6≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.82019-07-23
CVE-2019-2828 [CRITICAL] CVE-2019-2828: Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wirele Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wireless). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Field Service. Successful attacks require human interaction f
nvd
CVE-2017-10170HIGHCVSS 8.2v12.1.1v12.1.2+1 more2017-08-08
CVE-2017-10170 [HIGH] CVE-2017-10170: Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wirele Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wireless/WAP). Supported versions that are affected are 12.1.1, 12.1.2 and 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Field Service. Successful attacks require human interaction from a pe
nvd
CVE-2017-10184MEDIUMCVSS 5.3v12.1.1v12.1.2+5 more2017-08-08
CVE-2017-10184 [MEDIUM] CVE-2017-10184: Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wirele Vulnerability in the Oracle Field Service component of Oracle E-Business Suite (subcomponent: Wireless/WAP). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Field Service. Successful attacks o
nvd
CVE-2016-3466CRITICALCVSS 9.1v12.1.1v12.1.2+1 more2016-04-21
CVE-2016-3466 [CRITICAL] CVE-2016-3466: Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 1 Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Wireless.
nvd
CVE-2016-0542MEDIUMCVSS 4.3v12.1.1v12.1.2+4 more2016-01-21
CVE-2016-0542 [MEDIUM] CVE-2016-0542: Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 1 Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via unknown vectors related to Field Service Map.
nvd