Vulnerabilities > Oracle > Essbase > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-04-18 CVE-2023-21942 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2023-04-18 CVE-2023-21943 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2023-04-18 CVE-2023-21944 Unspecified vulnerability in Oracle Essbase 21.4
Vulnerability in Oracle Essbase (component: Security and Provisioning).
network
high complexity
oracle
5.3
2022-07-19 CVE-2022-21508 Unspecified vulnerability in Oracle Essbase 21.3
Vulnerability in Oracle Essbase (component: Security and Provisioning).
local
low complexity
oracle
5.8
2021-06-11 CVE-2021-22897 Exposure of Resource to Wrong Sphere vulnerability in multiple products
curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library.
network
low complexity
haxx oracle netapp siemens splunk CWE-668
5.3
2021-04-01 CVE-2021-22876 Information Exposure vulnerability in multiple products
curl 7.1.1 to and including 7.75.0 is vulnerable to an "Exposure of Private Personal Information to an Unauthorized Actor" by leaking credentials in the HTTP Referer: header.
5.3
2021-03-25 CVE-2021-3449 NULL Pointer Dereference vulnerability in multiple products
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client.
5.9
2021-02-16 CVE-2021-23841 NULL Pointer Dereference vulnerability in multiple products
The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate.
5.9
2020-12-08 CVE-2020-1971 NULL Pointer Dereference vulnerability in multiple products
The X.509 GeneralName type is a generic type for representing different types of names.
5.9
2019-11-08 CVE-2019-10219 Cross-site Scripting vulnerability in multiple products
A vulnerability was found in Hibernate-Validator.
network
low complexity
redhat netapp oracle CWE-79
6.1