Vulnerabilities > Oracle > BI Publisher > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-16 CVE-2024-20979 Unspecified vulnerability in Oracle BI Publisher 12.2.1.4.0/6.4.0.0.0/7.0.0.0.0
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server).
network
low complexity
oracle
5.4
2024-01-16 CVE-2024-20987 Unspecified vulnerability in Oracle BI Publisher 12.2.1.4.0
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server).
network
low complexity
oracle
5.4
2023-10-17 CVE-2023-22105 Unspecified vulnerability in Oracle BI Publisher 6.4.0.0.0/7.0.0.0.0
Vulnerability in the BI Publisher product of Oracle Analytics (component: Web Server).
network
low complexity
oracle
5.4
2023-04-18 CVE-2023-21941 Unspecified vulnerability in Oracle BI Publisher 12.2.1.4.0/6.4.0.0.0
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server).
network
low complexity
oracle
4.3
2023-04-18 CVE-2023-21970 Unspecified vulnerability in Oracle BI Publisher 6.4.0.0.0
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Security).
network
low complexity
oracle
5.7
2022-07-19 CVE-2022-21523 Unspecified vulnerability in Oracle BI Publisher 12.2.1.3.0/12.2.1.4.0
Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: BI Publisher Security).
network
low complexity
oracle
4.3
2021-07-21 CVE-2021-2401 XXE vulnerability in Oracle BI Publisher
Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: E-Business Suite - XDO).
network
low complexity
oracle CWE-611
5.3
2019-11-08 CVE-2019-10219 Cross-site Scripting vulnerability in multiple products
A vulnerability was found in Hibernate-Validator.
network
low complexity
redhat netapp oracle CWE-79
6.1
2019-10-16 CVE-2019-2898 Unspecified vulnerability in Oracle BI Publisher 11.1.1.9.0/12.2.1.3.0/12.2.1.4.0
Vulnerability in the BI Publisher (formerly XML Publisher) product of Oracle Fusion Middleware (component: BI Publisher Security).
network
low complexity
oracle
4.3
2019-04-20 CVE-2019-11358 jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. 6.1