Vulnerabilities > Oracle > Hyperion Financial Reporting > High

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2019-17566 Server-Side Request Forgery (SSRF) vulnerability in multiple products
Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes.
network
low complexity
apache oracle CWE-918
7.5
2018-07-18 CVE-2018-2907 Unspecified vulnerability in Oracle Hyperion Financial Reporting 11.1.2
Vulnerability in the Hyperion Financial Reporting component of Oracle Hyperion (subcomponent: Security Models).
network
low complexity
oracle
8.6
2017-10-19 CVE-2017-10310 Information Exposure vulnerability in Oracle Hyperion Financial Reporting 11.1.2
Vulnerability in the Oracle Hyperion Financial Reporting component of Oracle Hyperion (subcomponent: Security Models).
network
low complexity
oracle CWE-200
7.5