cbcvebase.

Oracle Jd Edwards Enterpriseone Tools vulnerabilities

150 known vulnerabilities affecting oracle/jd_edwards_enterpriseone_tools.

Total CVEs
150
CISA KEV
2
actively exploited
Public exploits
11
Exploited in wild
6
Severity breakdown
CRITICAL18HIGH53MEDIUM77LOW2

Vulnerabilities

Page 8 of 8
CVE-2019-2564P4MEDIUMCVSS 4.3v9.22019-04-23
CVE-2019-2564 [MEDIUM] CVE-2019-2564: Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomp Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can result in
nvd
CVE-2011-2317P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2317 [MEDIUM] CVE-2011-2317: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastucture SEC (JDNET).
nvd
CVE-2011-2321P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2321 [MEDIUM] CVE-2011-2321: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDNET).
nvd
CVE-2011-2325P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2325 [MEDIUM] CVE-2011-2325: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2326, CVE-2011-3509, and CVE-2011-3524.
nvd
CVE-2011-3524P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3524 [MEDIUM] CVE-2011-3524: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3509.
nvd
CVE-2011-2326P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-2326 [MEDIUM] CVE-2011-2326: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-3509, and CVE-2011-3524.
nvd
CVE-2011-3509P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3509 [MEDIUM] CVE-2011-3509: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3524.
nvd
CVE-2011-3514P4MEDIUMCVSS 4.0v8.982012-01-18
CVE-2011-3514 [MEDIUM] CVE-2011-3514: Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allow Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastructure SEC (JDENET).
nvd
CVE-2024-20905P4LOWCVSS 2.7fixed in 9.2.8.02024-02-17
CVE-2024-20905 [LOW] CWE-404 CVE-2024-20905: Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterpr Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure SEC). Supported versions that are affected are Prior to 9.2.8.0. Easily exploitable vulnerability allows high privileged attacker with network access via JDENET to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this v
nvd
CVE-2024-20957P4LOWCVSS 2.7fixed in 9.2.8.12024-01-16
CVE-2024-20957 [LOW] CVE-2024-20957: Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Package Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Package Build SEC). Supported versions that are affected are Prior to 9.2.8.1. Easily exploitable vulnerability allows high privileged attacker with network access via JDENET to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can res
nvd
Oracle Jd Edwards Enterpriseone Tools vulnerabilities | cvebase