VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Oracle
>
Retail Xstore Point OF Service
> High
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2021-08-23
CVE-2021-39149
XStream is a simple library to serialize objects to XML and back again.
network
high complexity
xstream-project
fedoraproject
debian
netapp
oracle
8.5
8.5
2021-08-23
CVE-2021-39151
XStream is a simple library to serialize objects to XML and back again.
network
high complexity
xstream-project
fedoraproject
debian
netapp
oracle
8.5
8.5
2021-08-23
CVE-2021-39154
XStream is a simple library to serialize objects to XML and back again.
network
high complexity
xstream-project
fedoraproject
debian
netapp
oracle
8.5
8.5
2021-05-28
CVE-2021-29505
XStream is software for serializing Java objects to XML and back again.
network
low complexity
xstream-project
debian
fedoraproject
netapp
oracle
8.8
8.8
2021-03-23
CVE-2021-21349
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project
debian
fedoraproject
oracle
8.6
8.6
2021-03-23
CVE-2021-21348
Resource Exhaustion vulnerability in multiple products
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project
debian
fedoraproject
oracle
CWE-400
7.5
7.5
2021-03-23
CVE-2021-21343
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project
debian
fedoraproject
oracle
7.5
7.5
2021-03-23
CVE-2021-21341
XStream is a Java library to serialize objects to XML and back again.
network
low complexity
xstream-project
debian
fedoraproject
oracle
7.5
7.5
2021-01-07
CVE-2020-36183
Deserialization of Untrusted Data vulnerability in multiple products
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool.
network
high complexity
fasterxml
netapp
debian
oracle
CWE-502
8.1
8.1
2021-01-07
CVE-2020-36182
Deserialization of Untrusted Data vulnerability in multiple products
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS.
network
high complexity
fasterxml
netapp
debian
oracle
CWE-502
8.1
8.1
«
Previous
1
2
(current)
3
4
5
...
6
7
»
Next