Oracle Web Services Manager vulnerabilities

3 known vulnerabilities affecting oracle/web_services_manager.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2

Vulnerabilities

Page 1 of 1
CVE-2026-21992CRITICALCVSS 9.8v12.2.1.4.0v14.1.2.1.02026-03-20
CVE-2026-21992 [CRITICAL] CWE-306 CVE-2026-21992: Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: REST We Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: REST WebServices) and Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker w
nvd
CVE-2023-21862HIGHCVSS 8.1v12.2.1.4.02023-01-18
CVE-2023-21862 [HIGH] CWE-611 CVE-2023-21862: Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: XML Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: XML Security component). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Web Services Manager. Successful attacks require human interac
nvd
CVE-2022-21497HIGHCVSS 8.1v12.2.1.3.0v12.2.1.4.02022-04-19
CVE-2022-21497 [HIGH] CVE-2022-21497: Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Web Services Manager. Successful attacks require human in
nvd