Vulnerabilities > Oracle > Essbase

DATE CVE VULNERABILITY TITLE RISK
2023-07-18 CVE-2023-22010 Unspecified vulnerability in Oracle Essbase 21.4.3.0.0
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
2.2
2023-04-18 CVE-2023-21942 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2023-04-18 CVE-2023-21943 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2023-04-18 CVE-2023-21944 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2022-07-19 CVE-2022-21508 Unspecified vulnerability in Oracle Essbase 21.3
Vulnerability in Oracle Essbase (component: Security and Provisioning).
local
low complexity
oracle
5.8
2021-08-24 CVE-2021-3711 Classic Buffer Overflow vulnerability in multiple products
In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt().
network
low complexity
openssl debian netapp oracle tenable CWE-120
critical
9.8
2021-08-24 CVE-2021-3712 Out-of-bounds Read vulnerability in multiple products
ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length.
7.4
2021-06-11 CVE-2021-22897 Exposure of Resource to Wrong Sphere vulnerability in multiple products
curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library.
network
low complexity
haxx oracle netapp siemens splunk CWE-668
5.3
2021-06-11 CVE-2021-22898 Missing Initialization of Resource vulnerability in multiple products
curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers.
3.1
2021-06-11 CVE-2021-22901 Use After Free vulnerability in multiple products
curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TLS 1.3 session ticket arrives over a connection.
network
high complexity
haxx oracle netapp siemens splunk CWE-416
8.1