Vulnerabilities > Oracle > Application Server > 10.1.2.0.0

DATE CVE VULNERABILITY TITLE RISK
2009-01-14 CVE-2008-4014 Multiple vulnerability in Oracle January 2009 Critical Patch Update
Unspecified vulnerability in the Oracle BPEL Process Manager component in Oracle Application Server allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle
5.5
2007-04-18 CVE-2007-2123 Multiple vulnerability in Oracle April 2007 Security Update
Unspecified vulnerability in the Portal component in Oracle Application Server 10.1.3 up to 10.1.3.2.0, 10.1.2 up to 10.1.2.2.0, and 9.0.4.3 has unknown impact and attack vectors, aka AS04.
network
low complexity
oracle
critical
10.0
2007-03-22 CVE-2007-1609 Cross-Site Scripting vulnerability in Oracle Application Server 10.1.2.0.0
Cross-site scripting (XSS) vulnerability in servlet/Spy in Dynamic Monitoring Services (DMS) in Oracle Application Server (OAS) 10g 10.1.2.0.0 allows remote attackers to inject arbitrary web script or HTML via the table parameter.
network
oracle
4.3
2007-01-17 CVE-2007-0287 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Unspecified vulnerability in Oracle Application Server 9.0.4.3, 10.1.2.0.0, and 10.1.2.0.2; and Collaboration Suite 9.0.4.2 and 10.1.2; has unknown impact and attack vectors related to Containers for J2EE, aka OC4J08.
local
low complexity
oracle
1.7
2007-01-17 CVE-2007-0284 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Multiple unspecified vulnerabilities in Oracle Application Server 9.0.4.3 and 10.1.2.0.0, and Collaboration Suite 9.0.4.2, have unknown impact and attack vectors related to Oracle Containers for J2EE, aka (1) OC4J03 and (2) OC4J04.
network
low complexity
oracle
6.4
2007-01-17 CVE-2007-0282 Multiple vulnerability in Oracle products
Unspecified vulnerability in Oracle HTTP Server 9.0.1.5, Application Server 9.0.4.2 and 10.1.2.0.0, and Collaboration Suite 9.0.4.2 has unknown impact and attack vectors related to the Oracle Process Mgmt & Notification component, aka OPMN02.
local
low complexity
oracle
3.2
2006-07-21 CVE-2006-3712 Multiple vulnerability in Oracle Application Server 10.1.2.0.0/9.0.4.2
Unspecified vulnerability in OC4J for Oracle Application Server 9.0.4.2 and 10.1.2.0.0 has unknown impact and attack vectors, aka Oracle Vuln# AS07.
network
low complexity
oracle
5.0
2006-07-21 CVE-2006-3710 Multiple vulnerability in Oracle July 2006 Security Update
Unspecified vulnerability in OC4J for Oracle Application Server 9.0.2.3, 9.0.3.1, 9.0.4.2, and 10.1.2.0.0 has unknown impact and attack vectors, aka Oracle Vuln# (1) AS05 and (2) AS08.
network
low complexity
oracle
critical
10.0
2006-07-21 CVE-2006-3709 Multiple vulnerability in Oracle July 2006 Security Update
Unspecified vulnerability in OC4J for Oracle Application Server 9.0.2.3, 9.0.3.1, and 10.1.2.0.0 has unknown impact and attack vectors, aka Oracle Vuln# AS04.
network
low complexity
oracle
5.0
2006-04-20 CVE-2006-1884 Multiple vulnerability in Oracle April 2006 Security Update
Unspecified vulnerability in the Oracle Thesaurus Management System component in Oracle E-Business Suite and OPA 4.5.2 Applications has unknown impact and attack vectors, aka Vuln# OPA01.
network
low complexity
jdedwards oneworld oracle
critical
10.0