cbcvebase.

Oracle Siebel Crm vulnerabilities

80 known vulnerabilities affecting oracle/siebel_crm.

Total CVEs
80
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM68LOW9

Vulnerabilities

Page 1 of 4
CVE-2026-46885P3HIGHCVSS 8.8≥ 17.0, ≤ 26.52026-06-17
CVE-2026-46885 [HIGH] CWE-269 CVE-2026-46885: Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: EAI). Supporte Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: EAI). Supported versions that are affected are 17.0-26.5. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in takeover of Siebel CRM In
nvd
CVE-2019-2965P3HIGHCVSS 7.5≤ 19.82019-10-16
CVE-2019-2965 [HIGH] CVE-2019-2965: Vulnerability in the Siebel Core - DB Deployment and Configuration product of Oracle Siebel CRM (com Vulnerability in the Siebel Core - DB Deployment and Configuration product of Oracle Siebel CRM (component: Install - Configuration). Supported versions that are affected are 19.8 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Core - DB Deployment and Configuration. Successful attack
nvd
CVE-2026-46888P3HIGHCVSS 7.8≥ 17.0, ≤ 26.52026-06-17
CVE-2026-46888 [HIGH] CWE-284 CVE-2026-46888: Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Database Upgrade Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Database Upgrade). Supported versions that are affected are 17.0-26.5. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Siebel CRM Deployment executes to compromise Siebel CRM Deployment. Successful attacks of this
nvd
CVE-2023-21909P3MEDIUMCVSS 6.5≤ 23.32023-04-18
CVE-2023-21909 [MEDIUM] CVE-2023-21909: Vulnerability in the Siebel CRM product of Oracle Siebel CRM (component: UI Framework). Supported v Vulnerability in the Siebel CRM product of Oracle Siebel CRM (component: UI Framework). Supported versions that are affected are 23.3 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM. Successful attacks of this vulnerability can result in unauthorized access to critical data or c
nvd
CVE-2021-2368P4MEDIUMCVSS 5.9≤ 21.52021-07-21
CVE-2021-2368 [MEDIUM] CVE-2021-2368: Vulnerability in the Siebel CRM product of Oracle Siebel CRM (component: Siebel Core - Server Infras Vulnerability in the Siebel CRM product of Oracle Siebel CRM (component: Siebel Core - Server Infrastructure). Supported versions that are affected are 21.5 and Prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Siebel CRM. Successful attacks of this vulnerability can result in unauthorized ac
nvd
CVE-2013-5835P4MEDIUMCVSS 6.8v8.1.1v8.2.22013-10-16
CVE-2013-5835 [MEDIUM] CVE-2013-5835: Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Open_UI.
nvd
CVE-2012-1731P4MEDIUMCVSS 6.8v8.1.1v8.2.22012-07-17
CVE-2012-1731 [MEDIUM] CVE-2012-1731: Unspecified vulnerability in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect con Unspecified vulnerability in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Web UI.
nvd
CVE-2012-1728P4MEDIUMCVSS 5.8v8.1.1v8.2.22012-07-17
CVE-2012-1728 [MEDIUM] CVE-2012-1728: Unspecified vulnerability in the Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect Unspecified vulnerability in the Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Portal Framework.
nvd
CVE-2015-0366P4MEDIUMCVSS 5.0v8.1.1v8.2.22015-01-21
CVE-2015-0366 [MEDIUM] CVE-2015-0366: Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 al Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Java Integration, a different vulnerability than CVE-2014-0369.
nvd
CVE-2014-0369P4MEDIUMCVSS 5.0v8.1.1v8.2.22014-01-15
CVE-2014-0369 [MEDIUM] CVE-2014-0369: Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 al Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Java Integration, a different vulnerability than CVE-2015-0366.
nvd
CVE-2013-5867P4MEDIUMCVSS 5.0v8.1.1v8.2.22013-10-16
CVE-2013-5867 [MEDIUM] CVE-2013-5867: Unspecified vulnerability in the Siebel Core - Server Infrastructure component in Oracle Siebel CRM Unspecified vulnerability in the Siebel Core - Server Infrastructure component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect availability via vectors related to SISNAPI & Network Infrastructure.
nvd
CVE-2013-1551P4MEDIUMCVSS 6.0v8.1.1v8.2.22013-04-17
CVE-2013-1551 [MEDIUM] CVE-2013-1551: Unspecified vulnerability in the Siebel Enterprise Application Integration component in Oracle Siebe Unspecified vulnerability in the Siebel Enterprise Application Integration component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Integration Business Services.
nvd
CVE-2013-5761P4MEDIUMCVSS 5.8v8.1.1v8.2.22013-10-16
CVE-2013-5761 [MEDIUM] CVE-2013-5761: Unspecified vulnerability in the Siebel Core - Server BizLogic Script component in Oracle Siebel CRM Unspecified vulnerability in the Siebel Core - Server BizLogic Script component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Integration - Scripting.
nvd
CVE-2011-3518P4MEDIUMCVSS 5.5v8.0.02011-10-18
CVE-2011-3518 [MEDIUM] CVE-2011-3518: Unspecified vulnerability in the Siebel Core - UIF Client component in Oracle Siebel CRM 8.0.0 allow Unspecified vulnerability in the Siebel Core - UIF Client component in Oracle Siebel CRM 8.0.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to User Interface.
nvd
CVE-2013-2398P4MEDIUMCVSS 6.0v8.1.1v8.2.22013-04-17
CVE-2013-2398 [MEDIUM] CVE-2013-2398: Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Open UI Client.
nvd
CVE-2012-1742P4MEDIUMCVSS 5.0v8.1.1v8.2.22012-07-17
CVE-2012-1742 [MEDIUM] CVE-2012-1742: Unspecified vulnerability in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect ava Unspecified vulnerability in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect availability via unknown vectors related to UI Framework, a different vulnerability than CVE-2012-1760.
nvd
CVE-2013-3841P4MEDIUMCVSS 5.0v8.1.1v8.2.22013-10-16
CVE-2013-3841 [MEDIUM] CVE-2013-3841: Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 al Unspecified vulnerability in the Siebel Core - EAI component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Web Services.
nvd
CVE-2019-2570P4MEDIUMCVSS 4.7v19.32019-04-23
CVE-2019-2570 [MEDIUM] CVE-2019-2570: Vulnerability in the Siebel Core - Server BizLogic Script component of Oracle Siebel CRM (subcompone Vulnerability in the Siebel Core - Server BizLogic Script component of Oracle Siebel CRM (subcomponent: Integration - Scripting). The supported version that is affected is 19.3. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Siebel Core - Server BizLogic Script. Successful attacks of this vulnerabil
nvd
CVE-2015-2587P4MEDIUMCVSS 4.3v8.1.1v8.2.2+1 more2015-07-16
CVE-2015-2587 [MEDIUM] CVE-2015-2587: Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, an Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, and 15.0 allows remote attackers to affect integrity via vectors related to SWSE Server Infrastructure.
nvd
CVE-2015-0365P4MEDIUMCVSS 4.3v8.1.1v8.2.22015-01-21
CVE-2015-0365 [MEDIUM] CVE-2015-0365: Unspecified vulnerability in the Siebel Core - Server Infrastructure component in Oracle Siebel CRM Unspecified vulnerability in the Siebel Core - Server Infrastructure component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Security.
nvd
Oracle Siebel Crm vulnerabilities | cvebase