Oracle Hyperion Infrastructure Technology vulnerabilities
102 known vulnerabilities affecting oracle/hyperion_infrastructure_technology.
Total CVEs
102
CISA KEV
0
Public exploits
4
Exploited in wild
4
Severity breakdown
CRITICAL12HIGH44MEDIUM38LOW8
Vulnerabilities
Page 5 of 6
CVE-2026-62564P4MEDIUMCVSS 5.5v11.2.25.0.0002026-08-18
CVE-2026-62564 [MEDIUM] CWE-284 CVE-2026-62564: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to co
nvd
CVE-2026-62553P4MEDIUMCVSS 5.5v11.2.25.0.0002026-08-18
CVE-2026-62553 [MEDIUM] CWE-284 CVE-2026-62553: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to co
nvd
CVE-2026-62573P4MEDIUMCVSS 5.5v11.2.25.0.0002026-08-18
CVE-2026-62573 [MEDIUM] CWE-284 CVE-2026-62573: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to co
nvd
CVE-2026-35244P4MEDIUMCVSS 5.2v11.2.24.0.0002026-04-21
CVE-2026-35244 [MEDIUM] CWE-284 CVE-2026-35244: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Lifecycle Management). The supported version that is affected is 11.2.24.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Infrastructure Technology. Successful attacks
nvd
CVE-2026-62520P4MEDIUMCVSS 4.8v11.2.25.0.0002026-08-18
CVE-2026-62520 [MEDIUM] CWE-284 CVE-2026-62520: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Common Events). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Infrastructure Technology. Successful attacks of t
nvd
CVE-2021-27906P4MEDIUMCVSS 5.5fixed in 11.2.8.02021-03-19
CVE-2021-27906 [MEDIUM] CWE-789 CVE-2021-27906: A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue
A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox version 2.0.22 and prior 2.0.x versions.
nvd
CVE-2021-27807P4MEDIUMCVSS 5.5fixed in 11.2.8.02021-03-19
CVE-2021-27807 [MEDIUM] CWE-834 CVE-2021-27807: A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects
A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.0.22 and prior 2.0.x versions.
nvd
CVE-2021-2347P4MEDIUMCVSS 5.2v11.2.5.02021-07-21
CVE-2021-2347 [MEDIUM] CVE-2021-2347: Vulnerability in the Hyperion Infrastructure Technology product of Oracle Hyperion (component: Lifec
Vulnerability in the Hyperion Infrastructure Technology product of Oracle Hyperion (component: Lifecycle Management). The supported version that is affected is 11.2.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Hyperion Infrastructure Technology. Successful attacks require human interaction fr
nvd
CVE-2021-1993P4MEDIUMCVSS 4.8v11.1.2.42021-01-20
CVE-2021-1993 [MEDIUM] CVE-2021-1993: Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affect
Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Difficult to exploit vulnerability allows low privileged attacker having Create Session privilege with network access via Oracle Net to compromise Java VM. Successful attacks require human interaction from a person other
nvd
CVE-2026-62575P4MEDIUMCVSS 4.7v11.2.25.0.0002026-08-18
CVE-2026-62575 [MEDIUM] CWE-284 CVE-2026-62575: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to
nvd
CVE-2026-70963P4MEDIUMCVSS 4.2v11.2.25.0.0002026-08-18
CVE-2026-70963 [MEDIUM] CWE-284 CVE-2026-70963: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hyperion Infrastructure Technology. Success
nvd
CVE-2020-15358P4MEDIUMCVSS 5.5v11.1.2.42020-06-27
CVE-2020-15358 [MEDIUM] CWE-787 CVE-2020-15358: In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectO
In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.
nvd
CVE-2026-62584P4MEDIUMCVSS 4.0v11.2.25.0.0002026-08-18
CVE-2026-62584 [MEDIUM] CWE-284 CVE-2026-62584: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to c
nvd
CVE-2021-1999P4MEDIUMCVSS 5.0v11.1.2.42021-01-20
CVE-2021-1999 [MEDIUM] CVE-2021-1999: Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: RAS subs
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: RAS subsystems). The supported version that is affected is 8.8. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle ZFS Storage Appliance Kit executes to compromise Oracle ZFS Storage Appliance Kit. Successfu
nvd
CVE-2026-70962P4LOWCVSS 3.3v11.2.25.0.0002026-08-18
CVE-2026-70962 [LOW] CWE-284 CVE-2026-70962: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to compr
nvd
CVE-2026-62577P4LOWCVSS 3.3v11.2.25.0.0002026-08-18
CVE-2026-62577 [LOW] CWE-284 CVE-2026-62577: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to compr
nvd
CVE-2026-62569P4LOWCVSS 3.4v11.2.25.0.0002026-08-18
CVE-2026-62569 [LOW] CWE-284 CVE-2026-62569: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to comp
nvd
CVE-2026-62526P4LOWCVSS 3.3v11.2.25.0.0002026-08-18
CVE-2026-62526 [LOW] CWE-284 CVE-2026-62526: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Common Security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Infrastructure Technology. Successful attacks of th
nvd
CVE-2021-1996P4LOWCVSS 2.4v11.1.2.42021-01-20
CVE-2021-1996 [LOW] CVE-2021-1996: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Serv
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks require human interaction from a perso
nvd
CVE-2026-62511P4LOWCVSS 3.0v11.2.25.0.0002026-08-18
CVE-2026-62511 [LOW] CWE-284 CVE-2026-62511: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to co
nvd