Oracle Jd Edwards Enterpriseone Tools vulnerabilities
150 known vulnerabilities affecting oracle/jd_edwards_enterpriseone_tools.
Total CVEs
150
CISA KEV
2
actively exploited
Public exploits
11
Exploited in wild
6
Severity breakdown
CRITICAL18HIGH53MEDIUM77LOW2
Vulnerabilities
Page 8 of 8
CVE-2019-2564P4MEDIUMCVSS 4.3v9.22019-04-23
CVE-2019-2564 [MEDIUM] CVE-2019-2564: Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomp
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can result in
nvd
CVE-2011-2317P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2317 [MEDIUM] CVE-2011-2317: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastucture SEC (JDNET).
nvd
CVE-2011-2321P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2321 [MEDIUM] CVE-2011-2321: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDNET).
nvd
CVE-2011-2325P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2325 [MEDIUM] CVE-2011-2325: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2326, CVE-2011-3509, and CVE-2011-3524.
nvd
CVE-2011-3524P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3524 [MEDIUM] CVE-2011-3524: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3509.
nvd
CVE-2011-2326P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2326 [MEDIUM] CVE-2011-2326: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-3509, and CVE-2011-3524.
nvd
CVE-2011-3509P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3509 [MEDIUM] CVE-2011-3509: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3524.
nvd
CVE-2011-3514P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3514 [MEDIUM] CVE-2011-3514: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastructure SEC (JDENET).
nvd
CVE-2024-20905P4LOWCVSS 2.7fixed in 9.2.8.02024-02-17
CVE-2024-20905 [LOW] CWE-404 CVE-2024-20905: Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterpr
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure SEC). Supported versions that are affected are Prior to 9.2.8.0. Easily exploitable vulnerability allows high privileged attacker with network access via JDENET to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this v
nvd
CVE-2024-20957P4LOWCVSS 2.7fixed in 9.2.8.12024-01-16
CVE-2024-20957 [LOW] CVE-2024-20957: Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Package
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Package Build SEC). Supported versions that are affected are Prior to 9.2.8.1. Easily exploitable vulnerability allows high privileged attacker with network access via JDENET to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can res
nvd
← Previous8 / 8