Oracle Flexcube Direct Banking vulnerabilities
17 known vulnerabilities affecting oracle/flexcube_direct_banking.
Total CVEs
17
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM15LOW1
Vulnerabilities
Page 1 of 1
CVE-2021-2141LOWCVSS 2.0v12.0.2v12.0.32021-04-22
CVE-2021-2141 [LOW] CVE-2021-2141: Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Application
Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Login). Supported versions that are affected are 12.0.2 and 12.0.3. Difficult to exploit vulnerability allows high privileged attacker with network access via Oracle Net to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require hum
nvd
CVE-2020-14897MEDIUMCVSS 6.5v12.0.1v12.0.2+1 more2020-10-21
CVE-2020-14897 [MEDIUM] CVE-2020-14897: Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Application
Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Login). Supported versions that are affected are 12.0.1, 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks requir
nvd
CVE-2020-14890MEDIUMCVSS 6.5v12.0.1v12.0.2+1 more2020-10-21
CVE-2020-14890 [MEDIUM] CVE-2020-14890: Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Application
Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Login). Supported versions that are affected are 12.0.1, 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks requir
nvd
CVE-2019-2979MEDIUMCVSS 5.7v12.0.2v12.0.32019-10-16
CVE-2019-2979 [MEDIUM] CVE-2019-2979: Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Application
Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Payments). Supported versions that are affected are 12.0.2 and 12.0.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human inte
nvd
CVE-2019-2980MEDIUMCVSS 6.5v12.0.2v12.0.32019-10-16
CVE-2019-2980 [MEDIUM] CVE-2019-2980: Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Application
Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: eMail). Supported versions that are affected are 12.0.2 and 12.0.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks of this vulnerability
nvd
CVE-2019-2550MEDIUMCVSS 4.3v12.0.22019-01-16
CVE-2019-2550 [MEDIUM] CVE-2019-2550: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Logoff Page). The supported version that is affected is 12.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human inter
nvd
CVE-2019-2549MEDIUMCVSS 6.1v12.0.22019-01-16
CVE-2019-2549 [MEDIUM] CVE-2019-2549: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Logoff Page). The supported version that is affected is 12.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human inter
nvd
CVE-2018-2674MEDIUMCVSS 6.1v12.0.2v12.0.32018-01-18
CVE-2018-2674 [MEDIUM] CVE-2018-2674: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Logoff). Supported versions that are affected are 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human
nvd
CVE-2017-10181MEDIUMCVSS 6.8v12.0.2v12.0.32017-08-08
CVE-2017-10181 [MEDIUM] CVE-2017-10181: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Forgot Password). Supported versions that are affected are 12.0.2 and 12.0.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks requ
nvd
CVE-2017-3495MEDIUMCVSS 4.7v12.0.2v12.0.32017-04-24
CVE-2017-3495 [MEDIUM] CVE-2017-3495: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Pre-Login). Supported versions that are affected are 12.0.2 and 12.0.3. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require h
nvd
CVE-2017-3297MEDIUMCVSS 5.3v12.0.2v12.0.32017-01-27
CVE-2017-3297 [MEDIUM] CVE-2017-3297: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Framework). Supported versions that are affected are 12.0.2 and 12.0.3. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks of this vu
cvelistv5nvd
CVE-2017-3245MEDIUMCVSS 4.7v12.0.2v12.0.32017-01-27
CVE-2017-3245 [MEDIUM] CWE-200 CVE-2017-3245: Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applicati
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: Pre-Login). Supported versions that are affected are 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks req
cvelistv5nvd
CVE-2016-3589MEDIUMCVSS 6.1v12.0.1v12.0.2+1 more2016-07-21
CVE-2016-3589 [MEDIUM] CVE-2016-3589: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Servic
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Applications 12.0.1, 12.0.2, and 12.0.3 allows remote attackers to affect confidentiality and integrity via unknown vectors.
nvd
CVE-2016-0699CRITICALCVSS 9.1v12.0.2v12.0.32016-04-21
CVE-2016-0699 [CRITICAL] CVE-2016-0699: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Servic
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.2 and 12.0.3 allows remote attackers to affect confidentiality and integrity via vectors related to the Login sub-component.
nvd
CVE-2016-3464MEDIUMCVSS 5.7v12.0.32016-04-21
CVE-2016-3464 [MEDIUM] CVE-2016-3464: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Servic
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote authenticated users to affect confidentiality via vectors related to Accounts.
nvd
CVE-2016-0672MEDIUMCVSS 6.1v12.0.2v12.0.32016-04-21
CVE-2016-0672 [MEDIUM] CVE-2016-0672: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Servic
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.2 and 12.0.3 allows remote attackers to affect confidentiality and integrity via vectors related to Pre-Login.
nvd
CVE-2016-3463MEDIUMCVSS 6.1v12.0.32016-04-21
CVE-2016-3463 [MEDIUM] CVE-2016-3463: Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Servic
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote attackers to affect confidentiality and integrity via vectors related to Pre-Login.
nvd