Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
webcenter interaction vulnerabilities and exploits
(subscribe to this query)
6.3
CVSSv2
CVE-2017-3597
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). Supported versions that are affected are 11.1.1.8.0, 12.2.1.0.0, 12.2.1.1.0 and 12.2.1.2.0. Easily "exploitable" vulnerability allows low privileged attacker w...
Oracle Webcenter Sites 12.2.1.1.0
Oracle Webcenter Sites 12.2.1.0.0
Oracle Webcenter Sites 12.2.1.2.0
Oracle Webcenter Sites 11.1.1.8.0
6
CVSSv2
CVE-2018-2828
Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker with network access ...
Oracle Webcenter Content 11.1.1.9.0
Oracle Webcenter Content 12.2.1.2.0
Oracle Webcenter Content 12.2.1.3.0
5.8
CVSSv2
CVE-2020-2539
Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: Advanced UI). The supported version that is affected is 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCe...
Oracle Webcenter Sites 12.2.1.3.0
5.8
CVSSv2
CVE-2018-16954
An issue exists in Oracle WebCenter Interaction Portal 10.3.3. The login function of the portal is vulnerable to insecure redirection (also called an open redirect). The in_hi_redirect parameter is not validated by the application after a successful login. NOTE: this CVE is assig...
Oracle Webcenter Interaction 10.3.3
5.8
CVSSv2
CVE-2018-16958
An issue exists in Oracle WebCenter Interaction Portal 10.3.3. The ASP.NET_SessionID primary session cookie, when Internet Information Services (IIS) with ASP.NET is used, is not protected with the HttpOnly attribute. The attribute cannot be enabled by customers. Consequently, th...
Oracle Webcenter Interaction 10.3.3
5.8
CVSSv2
CVE-2018-2791
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). Supported versions that are affected are 11.1.1.8.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via ...
Oracle Webcenter Sites 12.2.1.3.0
Oracle Webcenter Sites 12.2.1.2.0
Oracle Webcenter Sites 11.1.1.8.0
1 EDB exploit
1 Github repository
5.8
CVSSv2
CVE-2018-2596
Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access...
Oracle Webcenter Content 12.2.1.2.0
Oracle Webcenter Content 12.2.1.3.0
Oracle Webcenter Content 11.1.1.9.0
5.8
CVSSv2
CVE-2018-2713
Vulnerability in the Oracle WebCenter Portal component of Oracle Fusion Middleware (subcomponent: WebCenter Spaces Application). Supported versions that are affected are 11.1.1.9.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with n...
Oracle Webcenter Portal 12.2.1.3.0
Oracle Webcenter Portal 11.1.1.9.0
Oracle Webcenter Portal 12.2.1.2.0
5.8
CVSSv2
CVE-2018-2564
Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). The supported version that is affected is 11.1.1.9.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Or...
Oracle Webcenter Content 11.1.1.9.0
5.8
CVSSv2
CVE-2017-10360
Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.1.0 and 12.2.1.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access...
Oracle Webcenter Content 12.2.1.1.0
Oracle Webcenter Content 12.2.1.2.0
Oracle Webcenter Content 11.1.1.9.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »