Vulnerabilities > Oracle > High

DATE CVE VULNERABILITY TITLE RISK
2021-08-01 CVE-2021-32066 Improper Handling of Exceptional Conditions vulnerability in multiple products
An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1.
network
high complexity
ruby-lang oracle CWE-755
7.4
2021-07-30 CVE-2021-31799 OS Command Injection vulnerability in multiple products
In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via | and tags in a filename.
local
high complexity
debian ruby-lang oracle CWE-78
7.0
2021-07-22 CVE-2021-36222 NULL Pointer Dereference vulnerability in multiple products
ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash.
network
low complexity
mit debian netapp oracle CWE-476
7.5
2021-07-21 CVE-2021-2428 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
high complexity
oracle
8.1
2021-07-21 CVE-2021-2430 Unspecified vulnerability in Oracle Outside in Technology 8.5.5
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters).
network
low complexity
oracle
7.5
2021-07-21 CVE-2021-2431 Unspecified vulnerability in Oracle Outside in Technology 8.5.5
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters).
network
low complexity
oracle
7.5
2021-07-21 CVE-2021-2433 Unspecified vulnerability in Oracle Essbase Analytic Provider Services 11.1.2.4/21.2
Vulnerability in the Essbase Analytic Provider Services product of Oracle Essbase (component: Web Services).
network
low complexity
oracle
7.5
2021-07-21 CVE-2021-2434 Unspecified vulnerability in Oracle web Applications Desktop Integrator
Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: Application Service).
network
low complexity
oracle
8.1
2021-07-21 CVE-2021-2435 Unspecified vulnerability in Oracle Essbase Analytic Provider Services 11.1.2.4
Vulnerability in the Essbase Analytic Provider Services product of Oracle Essbase (component: JAPI).
network
low complexity
oracle
8.1
2021-07-21 CVE-2021-2436 Unspecified vulnerability in Oracle Common Applications
Vulnerability in the Oracle Common Applications product of Oracle E-Business Suite (component: CRM User Management Framework).
network
low complexity
oracle
8.2