Vulnerabilities > Oracle > E Business Suite > 11i

DATE CVE VULNERABILITY TITLE RISK
2007-11-08 CVE-2007-5766 SQL Injection vulnerability in Oracle E-Business Suite 11I/12
SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
network
low complexity
oracle CWE-89
7.5
2004-08-06 CVE-2004-0543 SQL Injection vulnerability in Oracle Applications and E-Business Suite
Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.
network
low complexity
oracle
critical
10.0
2004-06-01 CVE-2004-0385 Unspecified vulnerability in Oracle Application Server web Cache and E-Business Suite
Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allows remote attackers to execute arbitrary code via a long HTTP request method header to the Web Cache listener.
network
low complexity
oracle
critical
10.0
2001-08-14 CVE-2001-0528 Unspecified vulnerability in Oracle E-Business Suite 11I
Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 7.x includes a debug version of FNDPUB11I.DLL, which logs the APPS schema password in cleartext in a debug file, which allows local users to obtain the password and gain privileges.
local
low complexity
oracle
7.2