Vulnerabilities > Oracle > Internet Directory

DATE CVE VULNERABILITY TITLE RISK
2019-05-01 CVE-2019-0227 Server-Side Request Forgery (SSRF) vulnerability in multiple products
A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006.
high complexity
apache oracle CWE-918
7.5
2018-08-02 CVE-2018-8032 Cross-site Scripting vulnerability in multiple products
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
network
low complexity
apache oracle debian CWE-79
6.1
2018-01-18 CVE-2018-2601 Unspecified vulnerability in Oracle Internet Directory 11.1.1.7.0/11.1.1.9.0/12.2.1.3.0
Vulnerability in the Oracle Internet Directory component of Oracle Fusion Middleware (subcomponent: Oracle Directory Services Manager).
network
high complexity
oracle
8.0