Oracle Hospitality Reporting And Analytics vulnerabilities
30 known vulnerabilities affecting oracle/hospitality_reporting_and_analytics.
Total CVEs
30
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH16MEDIUM11
Vulnerabilities
Page 1 of 2
CVE-2015-9251P2MEDIUMCVSS 6.1ExploitedPoCv9.1.02018-01-18
CVE-2015-9251 [MEDIUM] CWE-79 CVE-2015-9251: jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax req
jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.
nvd
CVE-2017-10402P2CRITICALCVSS 10.0v8.5.1v9.0.02017-10-19
CVE-2017-10402 [CRITICAL] CVE-2017-10402: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Report). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. While the vuln
nvd
CVE-2019-10086P3HIGHCVSS 7.3v9.1.02019-08-20
CVE-2019-10086 [HIGH] CWE-502 CVE-2019-10086: In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressi
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
nvd
CVE-2017-10405P3CRITICALCVSS 10.0v8.5.1v9.0.02017-10-19
CVE-2017-10405 [CRITICAL] CVE-2017-10405: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Report). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. While the vuln
nvd
CVE-2017-10404P3CRITICALCVSS 9.9v8.5.1v9.0.02017-10-19
CVE-2017-10404 [CRITICAL] CVE-2017-10404: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: iQuery). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. While the vulne
nvd
CVE-2019-2937P3HIGHCVSS 8.1v9.1.02019-10-16
CVE-2019-2937 [HIGH] CVE-2019-2937: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker having Admin - Configuration privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successf
nvd
CVE-2021-2395P3HIGHCVSS 8.1v9.1.02021-07-21
CVE-2021-2395 [HIGH] CVE-2021-2395: Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage
Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (component: iCare, Configuration). The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attac
nvd
CVE-2019-2934P3HIGHCVSS 8.1v9.1.02019-10-16
CVE-2019-2934 [HIGH] CVE-2019-2934: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker having Admin - Configuration privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successf
nvd
CVE-2021-1997P3HIGHCVSS 8.1v9.12021-01-20
CVE-2021-1997 [HIGH] CVE-2021-1997: Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage
Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (component: Report). The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of this vul
nvd
CVE-2021-2351P3HIGHCVSS 7.5v9.1.02021-07-21
CVE-2021-2351 [HIGH] CWE-327 CVE-2021-2351: Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versi
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks require human interaction from a perso
nvd
CVE-2023-21828P3HIGHCVSS 8.1v9.1.02023-01-18
CVE-2023-21828 [HIGH] CWE-284 CVE-2023-21828: Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage
Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (component: Reporting). The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Hospitality Reporting and Analytics. Successful attac
nvd
CVE-2018-3128P3HIGHCVSS 8.1v9.0v9.12018-10-17
CVE-2018-3128 [HIGH] CVE-2018-3128: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.0. Easily exploitable vulnerability allows low privileged attacker having Report privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of thi
nvd
CVE-2019-2401P3HIGHCVSS 8.1v9.1.02019-01-16
CVE-2019-2401 [HIGH] CVE-2019-2401: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker having Admin privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of th
nvd
CVE-2018-2803P3HIGHCVSS 8.1v9.02018-04-19
CVE-2018-2803 [HIGH] CVE-2018-2803: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Report). The supported version that is affected is 9.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of this vulne
nvd
CVE-2020-2746P3HIGHCVSS 8.1v9.1.02020-04-15
CVE-2020-2746 [HIGH] CVE-2020-2746: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker having Admin privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of th
nvd
CVE-2023-21826P3HIGHCVSS 7.6v9.1.02023-01-18
CVE-2023-21826 [HIGH] CVE-2023-21826: Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage
Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (component: Reporting). The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Hospitality Reporting and Analytics. Successful attacks requi
nvd
CVE-2017-10403P3HIGHCVSS 8.0v8.5.1v9.0.02017-10-19
CVE-2017-10403 [HIGH] CVE-2017-10403: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: iQuery). Supported versions that are affected are 8.5.1 and 9.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attack
nvd
CVE-2017-10000P3HIGHCVSS 7.7v8.5.1v9.0.02017-08-08
CVE-2017-10000 [HIGH] CWE-269 CVE-2017-10000: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Reporting). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. While th
nvd
CVE-2018-2650P3HIGHCVSS 7.1v8.5.1v9.0.02018-01-18
CVE-2018-2650 [HIGH] CVE-2018-2650: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Appl
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Report). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of
nvd
CVE-2019-2936P3MEDIUMCVSS 6.8v9.1.02019-10-16
CVE-2019-2936 [MEDIUM] CVE-2019-2936: Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverag
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Difficult to exploit vulnerability allows low privileged attacker having Admin - Configuration privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Succ
nvd
1 / 2Next →