cbcvebase.

Oracle Corporation Istore vulnerabilities

36 known vulnerabilities affecting oracle_corporation/istore.

Total CVEs
36
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH28MEDIUM8

Vulnerabilities

Page 1 of 2
CVE-2021-2241P3HIGHCVSS 8.1v12.1.1-12.1.32021-04-22
CVE-2021-2241 [HIGH] CVE-2021-2241: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle iStore. Successful attacks of this vulnerability can result in unauthorized creation, deletion
nvd
CVE-2018-3188P3HIGHCVSS 8.2v12.1.1v12.1.2+6 more2018-10-17
CVE-2018-3188 [HIGH] CVE-2018-3188: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Web interface Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Web interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require hu
nvd
CVE-2018-3018P3HIGHCVSS 8.2v12.1.1v12.1.2+6 more2018-07-18
CVE-2018-3018 [HIGH] CVE-2018-3018: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require hu
nvd
CVE-2018-2995P3HIGHCVSS 8.2v12.1.1v12.1.2+6 more2018-07-18
CVE-2018-2995 [HIGH] CVE-2018-2995: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require hu
nvd
CVE-2017-10414P3HIGHCVSS 8.2v12.1.1v12.1.2+6 more2017-10-19
CVE-2017-10414 [HIGH] CVE-2017-10414: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Checkout and Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Checkout and Order Placement). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful at
nvd
CVE-2019-2400P3HIGHCVSS 8.2v12.1.1v12.1.2+7 more2019-01-16
CVE-2019-2400 [HIGH] CVE-2019-2400: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: User Registra Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: User Registration). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attack
nvd
CVE-2021-2077P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-01-20
CVE-2021-2077 [HIGH] CVE-2021-2077: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2082P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-01-20
CVE-2021-2082 [HIGH] CVE-2021-2082: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2089P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-01-20
CVE-2021-2089 [HIGH] CVE-2021-2089: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Runtime Catalog). Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Runtime Catalog). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other t
nvd
CVE-2021-2096P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-01-20
CVE-2021-2096 [HIGH] CVE-2021-2096: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2017-10409P3HIGHCVSS 8.2v12.1.1v12.1.2+6 more2017-10-19
CVE-2017-10409 [HIGH] CVE-2017-10409: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Merchant UI). Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Merchant UI). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require hu
nvd
CVE-2019-2652P3HIGHCVSS 8.2v12.1.1v12.1.2+7 more2019-04-23
CVE-2019-2652 [HIGH] CVE-2019-2652: Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: Shopping Cart). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks re
nvd
CVE-2020-14582P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.92020-07-15
CVE-2020-14582 [HIGH] CWE-79 CVE-2020-14582: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: User Registration) Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: User Registration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a per
nvd
CVE-2021-2197P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2197 [HIGH] CVE-2021-2197: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2183P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2183 [HIGH] CVE-2021-2183: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2188P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2188 [HIGH] CVE-2021-2188: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2182P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2182 [HIGH] CVE-2021-2182: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2185P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2185 [HIGH] CVE-2021-2185: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2150P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2150 [HIGH] CVE-2021-2150: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
CVE-2021-2184P3HIGHCVSS 8.2v12.1.1-12.1.3v12.2.3-12.2.102021-04-22
CVE-2021-2184 [HIGH] CVE-2021-2184: Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Su Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other th
nvd
Oracle Corporation Istore vulnerabilities | cvebase