Oracle Universal Work Queue vulnerabilities

14 known vulnerabilities affecting oracle/universal_work_queue.

Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH10MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2025-50105HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.142025-07-15
CVE-2025-50105 [HIGH] CWE-284 CVE-2025-50105: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulner
nvd
CVE-2025-50107MEDIUMCVSS 6.1≥ 12.2.5, ≤ 12.2.142025-07-15
CVE-2025-50107 [MEDIUM] CWE-284 CVE-2025-50107: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Requ Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Request handling). Supported versions that are affected are 12.2.5-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interacti
nvd
CVE-2021-35562HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.102021-10-20
CVE-2021-35562 [HIGH] CVE-2021-35562: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful a
nvd
CVE-2021-2246HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.32021-04-22
CVE-2021-2246 [HIGH] CVE-2021-2246: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulner
nvd
CVE-2020-14855CRITICALCVSS 9.8v12.1.32020-10-21
CVE-2020-14855 [CRITICAL] CVE-2020-14855: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability ca
nvd
CVE-2020-14862HIGHCVSS 8.8≥ 12.2.3, ≤ 12.2.92020-10-21
CVE-2020-14862 [HIGH] CVE-2020-14862: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Inte Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3 - 12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability can resu
nvd
CVE-2020-2818HIGHCVSS 8.2≥ 12.1.1, ≤ 12.1.32020-04-15
CVE-2020-2818 [HIGH] CVE-2020-2818: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interactio
nvd
CVE-2020-2819HIGHCVSS 8.2≥ 12.1.1, ≤ 12.1.32020-04-15
CVE-2020-2819 [HIGH] CVE-2020-2819: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interactio
nvd
CVE-2017-10332HIGHCVSS 7.5v12.1.1v12.1.2+6 more2017-10-19
CVE-2017-10332 [HIGH] CWE-200 CVE-2017-10332: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Administration). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Wo
nvd
CVE-2017-3417HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3417 [HIGH] CVE-2017-3417: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
cvelistv5nvd
CVE-2017-3416HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3416 [HIGH] CVE-2017-3416: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
cvelistv5nvd
CVE-2017-3415HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3415 [HIGH] CVE-2017-3415: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
cvelistv5nvd
CVE-2016-0525MEDIUMCVSS 6.4v11.5.10.2v12.1.1+2 more2016-01-21
CVE-2016-0525 [MEDIUM] CVE-2016-0525: Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11 Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Work Provider Administration.
nvd
CVE-2016-0536MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0536 [MEDIUM] CVE-2016-0536: Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11 Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to error messages.
nvd