Vulnerabilities > Oracle > Banking Virtual Account Management

DATE CVE VULNERABILITY TITLE RISK
2023-04-18 CVE-2023-21903 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: OBVAM Internal Tfr Domain).
network
high complexity
oracle
5.3
2023-04-18 CVE-2023-21906 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: SMS Module).
network
low complexity
oracle
6.1
2023-04-18 CVE-2023-21907 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: OBVAM Trn Journal Domain).
network
high complexity
oracle
6.0
2023-04-18 CVE-2023-21908 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: OBVAM Trn Journal Domain).
network
high complexity
oracle
6.0
2023-04-18 CVE-2023-21905 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: Routing Hub).
network
low complexity
oracle
6.1
2023-04-18 CVE-2023-21904 Unspecified vulnerability in Oracle Banking Virtual Account Management 14.5/14.6/14.7
Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (component: OBVAM Trn Journal Domain).
network
high complexity
oracle
5.3
2022-04-01 CVE-2022-22963 Expression Language Injection vulnerability in multiple products
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a routing-expression that may result in remote code execution and access to local resources.
network
low complexity
vmware oracle CWE-917
critical
9.8
2021-03-23 CVE-2021-21351 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project debian fedoraproject oracle CWE-434
critical
9.1
2021-03-23 CVE-2021-21350 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project debian fedoraproject oracle CWE-434
critical
9.8
2021-03-23 CVE-2021-21349 Deserialization of Untrusted Data vulnerability in multiple products
XStream is a Java library to serialize objects to XML and back again.
8.6