cbcvebase.

Oracle Outside In Technology vulnerabilities

195 known vulnerabilities affecting oracle/outside_in_technology.

Total CVEs
195
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH138MEDIUM51

Vulnerabilities

Page 10 of 10
CVE-2024-21117P4MEDIUMCVSS 5.3v8.5.6v8.5.72024-04-16
CVE-2024-21117 [MEDIUM] CWE-77 CVE-2024-21117: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Core). Supported versions that are affected are 8.5.6 and 8.5.7. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Outside In Technology executes to compromise Oracle Outside In Techn
nvd
CVE-2024-21119P4MEDIUMCVSS 5.3v8.5.6v8.5.72024-04-16
CVE-2024-21119 [MEDIUM] CVE-2024-21119: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Core). Supported versions that are affected are 8.5.6 and 8.5.7. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Outside In Technology executes to compromise Oracle Outside In Technology.
nvd
CVE-2021-20227P4MEDIUMCVSS 5.5v8.5.52021-03-23
CVE-2021-20227 [MEDIUM] CWE-416 CVE-2021-20227: A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries locally on the SQLite database to cause a denial of service or possible code execution by triggering a use-after-free. The highest threat from this vulnerability is to system availability.
nvd
CVE-2024-21118P4MEDIUMCVSS 5.3v8.5.6v8.5.72024-04-16
CVE-2024-21118 [MEDIUM] CWE-269 CVE-2024-21118: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Core). Supported versions that are affected are 8.5.6 and 8.5.7. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Outside In Technology executes to compromise Oracle Outside In Tech
nvd
CVE-2024-21120P4MEDIUMCVSS 5.3v8.5.6v8.5.72024-04-16
CVE-2024-21120 [MEDIUM] CWE-863 CVE-2024-21120: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Core). Supported versions that are affected are 8.5.6 and 8.5.7. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Outside In Technology executes to compromise Oracle Outside In Tech
nvd
CVE-2020-13631P4MEDIUMCVSS 5.5v8.5.4v8.5.52020-05-27
CVE-2020-13631 [MEDIUM] CVE-2020-13631: SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, r SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c.
nvd
CVE-2020-27845P4MEDIUMCVSS 5.5v8.5.52021-01-05
CVE-2020-27845 [MEDIUM] CWE-125 CVE-2020-27845: There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is abl There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is able to provide untrusted input to openjpeg's conversion/encoding functionality, they could cause an out-of-bounds read. The highest impact of this flaw is to application availability.
nvd
CVE-2020-27841P4MEDIUMCVSS 5.5v8.5.52021-01-05
CVE-2020-27841 [MEDIUM] CWE-122 CVE-2020-27841: There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is a There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by the openjpeg encoder, this could cause an out-of-bounds read. The greatest impact from this flaw is to application availability.
nvd
CVE-2017-10051P4MEDIUMCVSS 5.7v8.5.3.02017-10-19
CVE-2017-10051 [MEDIUM] CVE-2017-10051: Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponen Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters). The supported version that is affected is 8.5.3.0. Easily exploitable vulnerability allows low privileged attacker with access to the physical communication segment attached to the hardware where the Oracle Outside In Technology execut
nvd
CVE-2018-3147P4MEDIUMCVSS 4.3v8.5.32018-10-17
CVE-2018-3147 [MEDIUM] CVE-2018-3147: Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponen Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters). The supported version that is affected are 8.5.3 and 8.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks require human intera
nvd
CVE-2020-27842P4MEDIUMCVSS 5.5v8.5.52021-01-05
CVE-2020-27842 [MEDIUM] CWE-125 CVE-2020-27842: There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provi There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.
nvd
CVE-2020-15358P4MEDIUMCVSS 5.5v8.5.4v8.5.52020-06-27
CVE-2020-15358 [MEDIUM] CWE-787 CVE-2020-15358: In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectO In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.
nvd
CVE-2020-13434P4MEDIUMCVSS 5.5v8.5.52020-05-24
CVE-2020-13434 [MEDIUM] CWE-190 CVE-2020-13434: SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c. SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.
nvd
CVE-2019-12973P4MEDIUMCVSS 5.5v8.5.4v8.5.52019-06-26
CVE-2019-12973 [MEDIUM] CVE-2019-12973: In OpenJPEG 2.3.1, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. In OpenJPEG 2.3.1, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file. This issue is similar to CVE-2018-6616.
nvd
CVE-2020-13632P4MEDIUMCVSS 5.5v8.5.4v8.5.52020-05-27
CVE-2020-13632 [MEDIUM] CWE-476 CVE-2020-13632: ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchin ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.
nvd
Oracle Outside In Technology vulnerabilities | cvebase