Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown
CVE-2008-7239
Disclosure Date: September 14, 2009 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10.2 allow remote attackers to affect confidentiality via unknown vectors related to the (1) Oracle Application Object Library (APP02) and (2) Oracle Applications Manager (APP04).
0
Attacker Value
Unknown
CVE-2008-7233
Disclosure Date: September 14, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the E-Business Application client, as used in Oracle Application Server 1.1.8.26 and E-Business Suite 11.5.10.2, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Oracle Jinitiator component, aka AS02.
0
Attacker Value
Unknown
CVE-2009-1000
Disclosure Date: April 15, 2009 (last updated October 04, 2023)
The Oracle Applications Framework component in Oracle E-Business Suite 12.0.6 and 11i10CU2 uses default passwords for unspecified "FND Applications Users (not DB users)," which has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2009-0995
Disclosure Date: April 15, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.0.6 and 11i10CU2 allows remote attackers to affect integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-5454
Disclosure Date: January 14, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the iProcurement component in Oracle E-Business Suite 11.5.10 CU2 and 12.0.6 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-1827
Disclosure Date: April 16, 2008 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10.2 and 12.0.4 have unknown impact and attack vectors related to (a) Advanced Pricing component, aka (1) APP02, (2) APP03, and (3) APP09; (b) Application Object Library component, aka (4) APP04, (5) APP07, and (6) APP11; (c) Applications Manager component, aka (7) APP06; (d) and Applications Technology Stack component, aka (8) APP08.
0
Attacker Value
Unknown
CVE-2007-5766
Disclosure Date: November 08, 2007 (last updated October 04, 2023)
SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: this is probably the same issue as CVE-2007-5527 or CVE-2007-5528, but there are insufficient details to be sure.
0
Attacker Value
Unknown
CVE-2004-0543
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.
0
Attacker Value
Unknown
CVE-2004-0385
Disclosure Date: June 01, 2004 (last updated February 22, 2025)
Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allows remote attackers to execute arbitrary code via a long HTTP request method header to the Web Cache listener. NOTE: due to the vagueness of the Oracle advisory, it is not clear whether there are additional issues besides this overflow, although the advisory alludes to multiple "vulnerabilities."
0
Attacker Value
Unknown
CVE-2001-0528
Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 7.x includes a debug version of FNDPUB11I.DLL, which logs the APPS schema password in cleartext in a debug file, which allows local users to obtain the password and gain privileges.
0