Show filters
74 Total Results
Displaying 1-10 of 74
Sort by:
Attacker Value
Unknown
CVE-2017-5966
Disclosure Date: May 23, 2017 (last updated November 26, 2024)
Sitecore CRM 8.1 Rev 151207 allows remote authenticated administrators to read arbitrary files via an absolute path traversal attack on sitecore/shell/download.aspx with the file parameter.
0
Attacker Value
Unknown
CVE-2017-5965
Disclosure Date: May 23, 2017 (last updated November 26, 2024)
The package manager in Sitecore CRM 8.1 Rev 151207 allows remote authenticated administrators to execute arbitrary ASP code by creating a ZIP archive in which a .asp file has a ..\ in its pathname, visiting sitecore/shell/applications/install/dialogs/Upload%20Package/UploadPackage2.aspx to upload this archive and extract its contents, and visiting a URI under sitecore/ to execute the .asp file.
0
Attacker Value
Unknown
CVE-2015-2649
Disclosure Date: July 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.22, and 15.0 allows remote authenticated users to affect confidentiality via vectors related to UIF Open UI.
0
Attacker Value
Unknown
CVE-2015-2600
Disclosure Date: July 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel Core - Server OM Svcs component in Oracle Siebel CRM 8.1.1, 8.2.2, and 15.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Security.
0
Attacker Value
Unknown
CVE-2015-2612
Disclosure Date: July 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel Core - Server OM Svcs component in Oracle Siebel CRM 8.1.1, 8.2.2, and 15.0 allows remote attackers to affect confidentiality via vectors related to LDAP Security Adapter.
0
Attacker Value
Unknown
CVE-2015-2587
Disclosure Date: July 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, and 15.0 allows remote attackers to affect integrity via vectors related to SWSE Server Infrastructure.
0
Attacker Value
Unknown
CVE-2015-0502
Disclosure Date: April 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1 and 8.2 allows remote attackers to affect integrity via unknown vectors related to Portal Framework.
0
Attacker Value
Unknown
CVE-2015-0417
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Portal Framework, a different vulnerability than CVE-2015-0388.
0
Attacker Value
Unknown
CVE-2015-0425
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Oracle Enterprise Asset Management component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Siebel Core - Unix/Windows.
0
Attacker Value
Unknown
CVE-2015-0419
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality via unknown vectors related to Portal Framework, a different vulnerability than CVE-2013-1510.
0