Oracle Siebel Apps Marketing vulnerabilities
10 known vulnerabilities affecting oracle/siebel_apps_marketing.
Total CVEs
10
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH8LOW1
Vulnerabilities
Page 1 of 1
CVE-2020-9484P2HIGHCVSS 7.0PoC≤ 21.92020-05-20
CVE-2020-9484 [HIGH] CWE-502 CVE-2020-9484: When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.
When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a) an attacker is able to control the contents and name of a file on the server; and b) the server is configured to use the PersistenceManager with a FileStore; and c) the PersistenceManager is configured with sessionAttributeValueClassN
nvd
CVE-2026-60754P3CRITICALCVSS 9.1≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60754 [CRITICAL] CWE-284 CVE-2026-60754: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized
nvd
CVE-2026-60751P3HIGHCVSS 8.8≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60751 [HIGH] CWE-284 CVE-2026-60751: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Siebe
nvd
CVE-2026-60767P3HIGHCVSS 8.8≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60767 [HIGH] CWE-284 CVE-2026-60767: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Siebe
nvd
CVE-2026-60803P3HIGHCVSS 7.4≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60803 [HIGH] CWE-284 CVE-2026-60803: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized c
nvd
CVE-2026-60779P3HIGHCVSS 8.1≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60779 [HIGH] CWE-284 CVE-2026-60779: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized crea
nvd
CVE-2026-60765P3HIGHCVSS 7.5≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60765 [HIGH] CWE-306 CVE-2026-60765: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Sie
nvd
CVE-2026-60808P3HIGHCVSS 7.5≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60808 [HIGH] CWE-284 CVE-2026-60808: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Email Marketin
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Email Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Siebel Apps - Marketing executes to compromise Siebel Apps - Marketing. While the vulnerabil
nvd
CVE-2026-60752P3HIGHCVSS 7.1≥ 17.0, ≤ 26.62026-08-18
CVE-2026-60752 [HIGH] CWE-284 CVE-2026-60752: Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). S
Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized acce
nvd
CVE-2020-9488P4LOWCVSS 3.7≤ 21.92020-04-27
CVE-2020-9488 [LOW] CWE-295 CVE-2020-9488: Improper validation of certificate with host mismatch in Apache Log4j SMTP appender. This could allo
Improper validation of certificate with host mismatch in Apache Log4j SMTP appender. This could allow an SMTPS connection to be intercepted by a man-in-the-middle attack which could leak any log messages sent through that appender. Fixed in Apache Log4j 2.12.3 and 2.13.1
nvd