Vulnerabilities > Oracle > Retail Xstore Point OF Service > 15.0.1

DATE CVE VULNERABILITY TITLE RISK
2018-04-19 CVE-2018-2840 Unspecified vulnerability in Oracle Retail Xstore Point of Service
Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Xstore Office).
network
low complexity
oracle
7.6
2017-12-01 CVE-2017-15707 Improper Input Validation vulnerability in multiple products
In Apache Struts 2.5 to 2.5.14, the REST Plugin is using an outdated JSON-lib library which is vulnerable and allow perform a DoS attack using malicious request with specially crafted JSON payload.
local
low complexity
apache netapp oracle CWE-20
6.2
2017-10-19 CVE-2017-10427 Unspecified vulnerability in Oracle Retail Xstore Point of Service
Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Point of Sale).
network
high complexity
oracle
6.5
2017-10-04 CVE-2017-12617 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTTP PUTs enabled (e.g.
network
high complexity
apache canonical oracle debian netapp redhat CWE-434
8.1
2017-08-08 CVE-2017-10214 Unspecified vulnerability in Oracle Retail Xstore Point of Service
Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Xstore Office).
network
low complexity
oracle
8.2
2017-08-08 CVE-2017-10183 Unspecified vulnerability in Oracle Retail Xstore Point of Service
Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Point of Sale).
network
high complexity
oracle
6.5