Vulnerabilities > Oracle > Primavera Gateway > 15.2

DATE CVE VULNERABILITY TITLE RISK
2018-01-18 CVE-2015-9251 Cross-site Scripting vulnerability in multiple products
jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.
network
low complexity
jquery oracle CWE-79
6.1
2017-04-24 CVE-2017-3508 Remote Security vulnerability in RETIRED: Oracle Primavera Products
Vulnerability in the Primavera Gateway component of Oracle Primavera Products Suite (subcomponent: Primavera Desktop Integration).
network
low complexity
oracle
6.5
2017-04-24 CVE-2017-3500 Remote Security vulnerability in Oracle Primavera Gateway
Vulnerability in the Primavera Gateway component of Oracle Primavera Products Suite (subcomponent: Primavera Desktop Integration).
network
oracle
4.9