Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
financial services software vulnerabilities and exploits
(subscribe to this query)
4.9
CVSSv2
CVE-2013-2386
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 up to and including 4.1.0 allows remote authenticated users to affect integrity and availability via vectors related to BASE.
Oracle Financial Services Software 3.1.0
Oracle Financial Services Software 4.1.0
Oracle Financial Services Software 2.8.0
3.6
CVSSv2
CVE-2013-2387
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 up to and including 4.1.0 allows remote authenticated users to affect confidentiality and integrity via vectors related to BASE.
Oracle Financial Services Software 2.8.0
Oracle Financial Services Software 3.1.0
Oracle Financial Services Software 4.1.0
3.5
CVSSv2
CVE-2012-0509
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2 and 5.3.0 up to and including 5.3.4 allows remote authenticated users to affect integrity via unknown vectors related to Core-Base.
Oracle Financial Services Software 5.3.4
Oracle Financial Services Software 5.0.2
Oracle Financial Services Software 5.3.0
2.1
CVSSv2
CVE-2013-1560
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 up to and including 4.1.0 allows remote authenticated users to affect confidentiality via vectors related to BASE, a different vulnerability than CVE-2013-2385.
Oracle Financial Services Software 2.8.0
Oracle Financial Services Software 3.1.0
Oracle Financial Services Software 4.1.0
4
CVSSv2
CVE-2013-1562
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 up to and including 4.1.0 allows remote authenticated users to affect integrity via vectors related to HELP.
Oracle Financial Services Software 4.1.0
Oracle Financial Services Software 3.1.0
Oracle Financial Services Software 2.8.0
3.6
CVSSv2
CVE-2012-3225
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.3.0 up to and including 5.3.4 allows remote authenticated users to affect confidentiality and integrity, related to BASE.
Oracle Financial Services Software 5.3.0
Oracle Financial Services Software 5.3.4
4
CVSSv2
CVE-2012-0576
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 6.0.1 and 6.2.0 allows remote authenticated users to affect integrity via unknown vectors related to Core-Help.
Oracle Financial Services Software 6.2.0
Oracle Financial Services Software 6.0.1
4.9
CVSSv2
CVE-2013-1505
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 up to and including 3.1.0 allows remote authenticated users to affect confidentiality and integrity via vectors related to BASE.
Oracle Financial Services Software 2.8.0
Oracle Financial Services Software 3.1.0
7.5
CVSSv2
CVE-2019-3773
Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.
Pivotal Software Spring Web Services
Oracle Flexcube Private Banking 12.1.0
Oracle Flexcube Private Banking 12.0.0
Oracle Financial Services Analytical Applications Infrastructure
4.3
CVSSv2
CVE-2020-11022
In jQuery versions greater than or equal to 1.2 and prior to 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuer...
Jquery Jquery
Drupal Drupal
Debian Debian Linux 9.0
Fedoraproject Fedora 31
Fedoraproject Fedora 32
Fedoraproject Fedora 33
Oracle Weblogic Server 12.1.3.0.0
Oracle Jdeveloper 11.1.1.9.0
Oracle Retail Back Office 14.1
Oracle Retail Back Office 14.0
Oracle Peoplesoft Enterprise Peopletools 8.56
Oracle Weblogic Server 10.3.6.0.0
Oracle Communications Webrtc Session Controller 7.2
Oracle Weblogic Server 12.2.1.3.0
Oracle Agile Product Lifecycle Management For Process 6.2.0.0
Oracle Peoplesoft Enterprise Peopletools 8.57
Oracle Application Testing Suite 13.3.0.1
Oracle Retail Returns Management 14.0
Oracle Retail Returns Management 14.1
Oracle Jdeveloper 12.2.1.3.0
Oracle Policy Automation Connector For Siebel 10.4.6
Oracle Financial Services Market Risk Measurement And Management 8.0.6
12 Github repositories
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »