Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-01-24 CVE-2022-23437 Infinite Loop vulnerability in multiple products
There's a vulnerability within the Apache Xerces Java (XercesJ) XML parser when handling specially crafted XML document payloads.
network
low complexity
apache oracle netapp CWE-835
6.5
2022-01-19 CVE-2021-35683 Unspecified vulnerability in Oracle Essbase Administration Services 11.1.2.3/11.1.2.4.046
Vulnerability in the Oracle Essbase Administration Services product of Oracle Essbase (component: EAS Console).
network
low complexity
oracle
6.5
2022-01-19 CVE-2021-35686 Unspecified vulnerability in Oracle Financial Services Analytical Applications Infrastructure
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Unified Metadata Manager).
network
low complexity
oracle
4.0
2022-01-19 CVE-2021-35687 Unspecified vulnerability in Oracle Financial Services Analytical Applications Infrastructure
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Unified Metadata Manager).
network
low complexity
oracle
5.0
2022-01-19 CVE-2022-21242 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
oracle
4.9
2022-01-19 CVE-2022-21243 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
low complexity
oracle
4.0
2022-01-19 CVE-2022-21244 Unspecified vulnerability in Oracle Primavera Portfolio Management
Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Web Access).
network
oracle
4.3
2022-01-19 CVE-2022-21245 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges).
network
low complexity
oracle netapp fedoraproject
4.3
2022-01-19 CVE-2022-21246 Unspecified vulnerability in Oracle Communications Operations Monitor
Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Engine).
network
oracle
4.9
2022-01-19 CVE-2022-21247 Unspecified vulnerability in Oracle Database Server 12.2.0.1/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
4.0