cbcvebase.

Oracle Flexcube Universal Banking vulnerabilities

95 known vulnerabilities affecting oracle/flexcube_universal_banking.

Total CVEs
95
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
HIGH20MEDIUM71LOW4

Vulnerabilities

Page 5 of 5
CVE-2017-3236P4MEDIUMCVSS 4.7v11.3.0v11.4.0+5 more2017-01-27
CVE-2017-3236 [MEDIUM] CWE-20 CVE-2017-3236: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE U
nvd
CVE-2017-10071P4MEDIUMCVSS 4.3v11.3.0v11.4.0+6 more2017-08-08
CVE-2017-10071 [MEDIUM] CVE-2017-10071: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: All Modules). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0, 12.2.0 and 12.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle
nvd
CVE-2017-3494P4MEDIUMCVSS 4.7v11.3.0v11.4.0+3 more2017-04-24
CVE-2017-3494 [MEDIUM] CVE-2017-3494: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Retail Teller). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2 and 12.0.3. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Ban
nvd
CVE-2016-8301P4MEDIUMCVSS 4.3v11.3.0v11.4.0+5 more2017-01-27
CVE-2016-8301 [MEDIUM] CVE-2016-8301: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Universa
nvd
CVE-2016-8302P4MEDIUMCVSS 4.3v11.3.0v11.4.0+5 more2017-01-27
CVE-2016-8302 [MEDIUM] CWE-200 CVE-2016-8302: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE U
nvd
CVE-2021-2324P4MEDIUMCVSS 4.6≥ 12.0.0, ≤ 12.4.0≥ 14.0.0, ≤ 14.4.02021-07-21
CVE-2021-2324 [MEDIUM] CVE-2021-2324: Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applicat Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Loans And Deposits). Supported versions that are affected are 12.0-12.4, 14.0-14.4 and . Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Banking. Successful at
nvd
CVE-2017-3481P4MEDIUMCVSS 4.3v11.3.0v11.4.0+1 more2017-04-24
CVE-2017-3481 [MEDIUM] CVE-2017-3481: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 11.3.0, 11.4.0 and 12.0.1. Easily "exploitable" vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Banking. Successful
nvd
CVE-2016-5603P4MEDIUMCVSS 4.3v11.3.0v11.4.0+5 more2016-10-25
CVE-2016-5603 [MEDIUM] CWE-200 CVE-2016-5603: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Ser Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, 12.0.1 through 12.0.3, 12.1.0, and 12.2.0 allows remote authenticated users to affect confidentiality via vectors related to INFRA, a different vulnerability than CVE-2016-5621.
nvd
CVE-2016-5479P4MEDIUMCVSS 4.3v11.3.0v11.4.0+1 more2016-10-25
CVE-2016-5479 [MEDIUM] CWE-200 CVE-2016-5479: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Ser Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, and 12.0.1 allows remote authenticated users to affect confidentiality via vectors related to INFRA.
nvd
CVE-2016-5621P4MEDIUMCVSS 4.3v11.3.0v11.4.0+5 more2016-10-25
CVE-2016-5621 [MEDIUM] CVE-2016-5621: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Ser Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, 12.0.1 and 12.0.3, 12.1.0, and 12.2.0 allows remote authenticated users to affect confidentiality via vectors related to INFRA, a different vulnerability than CVE-2016-5603.
nvd
CVE-2020-2700P4MEDIUMCVSS 4.3≥ 12.0.1, ≤ 12.4.0≥ 14.0.0, ≤ 14.3.02020-01-15
CVE-2020-2700 [MEDIUM] CVE-2020-2700: Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applicat Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Infrastructure). Supported versions that are affected are 12.0.1-12.4.0 and 14.0.0-14.3.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Banking. Successful
nvd
CVE-2019-2793P4LOWCVSS 3.5≥ 12.0.1, ≤ 12.0.3≥ 12.1.0, ≤ 12.4.0+1 more2019-07-23
CVE-2019-2793 [LOW] CVE-2019-2793: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1-12.0.3, 12.1.0-12.4.0 and 14.0.0-14.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Ban
nvd
CVE-2017-3235P4LOWCVSS 3.5v11.3.0v11.4.0+5 more2017-01-27
CVE-2017-3235 [LOW] CVE-2017-3235: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exploitable vulnerability allows physical access to compromise Oracle FLEXCUBE Universal Banking. Successful attacks of this vul
nvd
CVE-2016-5490P4LOWCVSS 3.3v11.4.02016-10-25
CVE-2016-5490 [LOW] CVE-2016-5490: Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Ser Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.4.0 allows local users to affect confidentiality via vectors related to INFRA.
nvd
CVE-2016-8305P4LOWCVSS 2.1v11.3.0v11.4.0+5 more2017-01-27
CVE-2016-8305 [LOW] CWE-200 CVE-2016-8305: Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applic Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.2, 12.0.3, 12.1.0 and 12.2.0. Easily exploitable vulnerability allows physical access to compromise Oracle FLEXCUBE Universal Banking. Successful attacks req
nvd
Oracle Flexcube Universal Banking vulnerabilities | cvebase