Vulnerabilities > Oracle > Communications Convergence > High

DATE CVE VULNERABILITY TITLE RISK
2023-01-18 CVE-2023-21848 Unspecified vulnerability in Oracle Communications Convergence 3.0.3.1.0
Vulnerability in the Oracle Communications Convergence product of Oracle Communications Applications (component: Admin Configuration).
network
low complexity
oracle
8.8
2020-12-18 CVE-2020-28052 An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66.
network
high complexity
bouncycastle apache oracle
8.1
2019-10-08 CVE-2019-17359 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
The ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory allocation, and resultant OutOfMemoryError error, via crafted ASN.1 data.
network
low complexity
bouncycastle apache netapp oracle CWE-770
7.5
2019-08-20 CVE-2019-10086 Deserialization of Untrusted Data vulnerability in multiple products
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects.
7.3
2017-08-08 CVE-2017-10031 Unspecified vulnerability in Oracle Communications Convergence 3.0/3.0.1
Vulnerability in the Oracle Communications Convergence component of Oracle Communications Applications (subcomponent: Mail Proxy (dojo)).
network
low complexity
oracle
7.2