Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2022-01-19 CVE-2022-23221 Argument Injection or Modification vulnerability in multiple products
H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTINGS=TRUE;FORBID_CREATION=FALSE;INIT=RUNSCRIPT substring, a different vulnerability than CVE-2021-42392.
network
low complexity
h2database debian oracle CWE-88
critical
9.8
2022-01-19 CVE-2021-35587 Unspecified vulnerability in Oracle Access Manager 11.1.2.3.0/12.2.1.3.0/12.2.1.4.0
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: OpenSSO Agent).
network
low complexity
oracle
critical
9.8
2022-01-19 CVE-2021-35683 Unspecified vulnerability in Oracle Essbase Administration Services 11.1.2.3/11.1.2.4.046
Vulnerability in the Oracle Essbase Administration Services product of Oracle Essbase (component: EAS Console).
network
low complexity
oracle
critical
9.9
2022-01-19 CVE-2021-35686 Unspecified vulnerability in Oracle Financial Services Analytical Applications Infrastructure
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Unified Metadata Manager).
network
low complexity
oracle
4.3
2022-01-19 CVE-2021-35687 Unspecified vulnerability in Oracle Financial Services Analytical Applications Infrastructure
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Unified Metadata Manager).
network
low complexity
oracle
5.3
2022-01-19 CVE-2022-21242 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
low complexity
oracle
5.4
2022-01-19 CVE-2022-21243 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
low complexity
oracle
4.3
2022-01-19 CVE-2022-21244 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
low complexity
oracle
4.3
2022-01-19 CVE-2022-21246 Unspecified vulnerability in Oracle Communications Operations Monitor
Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Engine).
network
low complexity
oracle
5.4
2022-01-19 CVE-2022-21247 Unspecified vulnerability in Oracle Database Server 12.2.0.1/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
2.7