Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
oracle jd edwards enterpriseone tools 9.2 vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2018-2658
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime SEC). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise ...
Oracle Jd Edwards Enterpriseone Tools 9.2
6.1
CVSSv3
CVE-2018-2659
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime SEC). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise ...
Oracle Jd Edwards Enterpriseone Tools 9.2
6.2
CVSSv3
CVE-2017-15707
In Apache Struts 2.5 to 2.5.14, the REST Plugin is using an outdated JSON-lib library which is vulnerable and allow perform a DoS attack using malicious request with specially crafted JSON payload.
Apache Struts
Netapp Oncommand Balance -
Oracle Retail Xstore Point Of Service 7.1.6
Oracle Retail Xstore Point Of Service 15.0.1
Oracle Retail Xstore Point Of Service 16.0.2
Oracle Jd Edwards Enterpriseone Tools 9.2
Oracle Weblogic Server 12.2.1.3
Oracle Enterprise Manager For Virtualization 13.2.3
Oracle Agile Plm Framework 9.3.6
Oracle Retail Xstore Point Of Service 6.5.11
Oracle Webcenter Portal 12.2.1.3.0
Oracle Global Lifecycle Management Opatchauto
Oracle Financial Services Hedge Management And Ifrs Valuations 8.0.4
Oracle Financial Services Hedge Management And Ifrs Valuations 8.0.5
Oracle Financial Services Market Risk Measurement And Management 8.0.5
Oracle Weblogic Server 12.2.1.2
Oracle Enterprise Manager For Virtualization 13.2.2
Oracle Retail Order Broker 5.2
Oracle Retail Xstore Point Of Service 7.0.6
Oracle Webcenter Portal 12.2.1.2.0
7.5
CVSSv3
CVE-2017-3730
In OpenSSL 1.1.0 prior to 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.
Openssl Openssl 1.1.0c
Openssl Openssl 1.1.0
Openssl Openssl 1.1.0b
Openssl Openssl 1.1.0a
Oracle Agile Engineering Data Management 6.2.0
Oracle Jd Edwards World Security A9.2
Oracle Communications Eagle Lnp Application Processor 10.1
Oracle Communications Application Session Controller 3.7.1
Oracle Jd Edwards World Security A9.4
Oracle Jd Edwards Enterpriseone Tools 9.2
Oracle Communications Operations Monitor 3.4
Oracle Communications Operations Monitor 4.0
Oracle Agile Engineering Data Management 6.1.3
Oracle Jd Edwards World Security A9.1
Oracle Jd Edwards World Security A9.3
Oracle Communications Eagle Lnp Application Processor 10.0
Oracle Communications Eagle Lnp Application Processor 10.2
Oracle Communications Application Session Controller 3.8.0
1 EDB exploit
1 Github repository
1 Article
6.5
CVSSv3
CVE-2017-3517
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime SEC). The supported version that is affected is 9.2. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to...
Oracle Jd Edwards Enterpriseone Tools 9.2
NA
CVE-2016-0421
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote malicious users to affect availability via vectors related to Monitoring and Diagnostics SEC.
Oracle Jd Edwards Products 9.2
Oracle Jd Edwards Products 9.1
NA
CVE-2016-0423
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote malicious users to affect confidentiality, integrity, and availability via vectors related to Enterprise Infrastructure SEC.
Oracle Jd Edwards Products 9.2
Oracle Jd Edwards Products 9.1
NA
CVE-2015-4919
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote malicious users to affect confidentiality, integrity, and availability via vectors related to Monitoring and Diagnostics SEC.
Oracle Jd Edwards Products 9.1
Oracle Jd Edwards Products 9.2
NA
CVE-2016-0420
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote malicious users to affect availability via unknown vectors related to Monitoring and Diagnostics.
Oracle Jd Edwards Products 9.2
Oracle Jd Edwards Products 9.1
NA
CVE-2016-0422
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allows remote malicious users to affect availability via vectors related to Enterprise Infrastructure SEC, a different vulnerability than CVE-2016-0424.
Oracle Jd Edwards Products 9.2
Oracle Jd Edwards Products 9.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4654
CVE-2023-49606
encryption
NULL pointer dereference
CVE-2024-4439
CVE-2024-4649
race condition
CVE-2024-27202
CVE-2024-34566
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »