Oracle Outside In Technology vulnerabilities
195 known vulnerabilities affecting oracle/outside_in_technology.
Total CVEs
195
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH138MEDIUM51
Vulnerabilities
Page 2 of 10
CVE-2016-3574P3HIGHCVSS 8.6v8.5.0v8.5.1+1 more2016-07-21
CVE-2016-3574 [HIGH] CVE-2016-3574: Unspecified vulnerability in the Outside In Technology component in Oracle Fusion Middleware 8.5.0,
Unspecified vulnerability in the Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-3575, CVE-2016-3576, CVE-2016-3577, CVE-2016-3578, CVE-2016-3579, CVE-2016-3580, CVE-
nvd
CVE-2018-2992P3HIGHCVSS 7.1v8.5.32018-07-18
CVE-2018-2992 [HIGH] CVE-2018-2992: Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponen
Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters). The supported version that is affected is 8.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks require human interaction from a
nvd
CVE-2016-5558P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5558 [HIGH] CVE-2016-5558: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5574, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.
nvd
CVE-2021-40690P3HIGHCVSS 7.5v8.5.52021-09-19
CVE-2021-40690 [HIGH] CWE-200 CVE-2021-40690: All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to
All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.
nvd
CVE-2016-3455P3HIGHCVSS 8.6v8.5.0v8.5.1+1 more2016-04-21
CVE-2016-3455 [HIGH] CVE-2016-3455: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters.
nvd
CVE-2016-5577P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5577 [HIGH] CVE-2016-5577: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.
nvd
CVE-2016-5578P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5578 [HIGH] CVE-2016-5578: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5577, CVE-2016-5579, and CVE-2016-5588.
nvd
CVE-2016-5579P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5579 [HIGH] CVE-2016-5579: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5577, CVE-2016-5578, and CVE-2016-5588.
nvd
CVE-2016-5574P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5574 [HIGH] CVE-2016-5574: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.
nvd
CVE-2016-5588P3HIGHCVSS 8.6v8.4.0v8.5.1+2 more2016-10-25
CVE-2016-5588 [HIGH] CVE-2016-5588: Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5577, CVE-2016-5578, and CVE-2016-5579.
nvd
CVE-2021-2066P3HIGHCVSS 8.6v8.5.4v8.5.52021-01-20
CVE-2021-2066 [HIGH] CVE-2021-2066: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can res
nvd
CVE-2021-2069P3HIGHCVSS 8.6v8.5.4v8.5.52021-01-20
CVE-2021-2069 [HIGH] CVE-2021-2069: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can res
nvd
CVE-2021-2068P3HIGHCVSS 8.6v8.5.4v8.5.52021-01-20
CVE-2021-2068 [HIGH] CVE-2021-2068: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can res
nvd
CVE-2021-2067P3HIGHCVSS 8.6v8.5.4v8.5.52021-01-20
CVE-2021-2067 [HIGH] CVE-2021-2067: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can res
nvd
CVE-2016-10328P3CRITICALCVSS 9.8v8.5.42017-04-14
CVE-2016-10328 [CRITICAL] CWE-787 CVE-2016-10328: FreeType 2 before 2016-12-16 has an out-of-bounds write caused by a heap-based buffer overflow relat
FreeType 2 before 2016-12-16 has an out-of-bounds write caused by a heap-based buffer overflow related to the cff_parser_run function in cff/cffparse.c.
nvd
CVE-2017-3271P3HIGHCVSS 8.6v8.5.2v8.5.32017-01-27
CVE-2017-3271 [HIGH] CVE-2017-3271: Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponen
Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters ). Supported versions that are affected are 8.5.2 and 8.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability c
nvd
CVE-2017-3293P3HIGHCVSS 8.6v8.5.2v8.5.32017-01-27
CVE-2017-3293 [HIGH] CVE-2017-3293: Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponen
Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters ). Supported versions that are affected are 8.5.2 and 8.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability c
nvd
CVE-2020-11656P3CRITICALCVSS 9.8v8.5.4v8.5.52020-04-09
CVE-2020-11656 [CRITICAL] CWE-416 CVE-2020-11656: In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an
In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an ORDER BY clause that belongs to a compound SELECT statement.
nvd
CVE-2021-2242P3HIGHCVSS 8.2v8.5.52021-04-22
CVE-2021-2242 [HIGH] CVE-2021-2242: Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). The supported version that is affected is 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in un
nvd
CVE-2011-4516P3MEDIUMCVSS 6.8v8.3.5v8.3.72011-12-15
CVE-2011-4516 [MEDIUM] CWE-787 CVE-2011-4516: Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer
Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted numrlvls value in a coding style default (COD) marker segment in a JPEG2000 file.
nvd