Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
659 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.1% | — | IBM Infosphere Optim Data Growth FOR Oracle E-business Suite | 27/5/2013 | 16/6/2026 | SQL injection vulnerability in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | |
| Modificada | Baja (3.5) | 0.76% | — | IBM Infosphere Optim Data Growth FOR Oracle E-business Suite | 27/5/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, related to a stored XSS issue. | |
| Modificada | Media (5) | 1.3% | — | IBM Infosphere Optim Data Growth FOR Oracle E-business Suite | 27/5/2013 | 16/6/2026 | The login page in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not limit the number of incorrect authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack. | |
| Modificada | Media (4.3) | 0.48% | — | IBM Infosphere Optim Data Growth FOR Oracle E-business Suite | 27/5/2013 | 16/6/2026 | IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 relies on the MD5 algorithm for signatures in X.509 certificates, which makes it easier for man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | |
| Modificada | Media (4.3) | 0.98% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Manager component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect integrity via vectors related to HTML OAM client. | |
| Modificada | Media (5) | 1.3% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect availability via unknown vectors related to Mid Tier File Management. | |
| Modificada | Media (4.3) | 1.0% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle HRMS component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Payroll. | |
| Modificada | Media (4.3) | 1.0% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Attachments. | |
| Modificada | Baja (2.6) | 1.1% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality via unknown vectors related to Diagnostics. | |
| Modificada | Media (4.3) | 0.98% | — | Oracle E-business Suite | 17/4/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Login. | |
| Modificada | Media (6.4) | 2.7% | 💥 Exploit | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Diagnostics. | |
| Modificada | Baja (2.1) | 0.76% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Bookmarkable Pages. | |
| Modificada | Media (6.4) | 1.2% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Campaign Management. | |
| Modificada | Media (6.4) | 1.4% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Application Framework. | |
| Modificada | Media (4.3) | 0.98% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Payroll component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to View Payslip. | |
| Modificada | Media (4.3) | 0.98% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Client System Analyzer. | |
| Modificada | Media (4.3) | 0.98% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Diagnostics. | |
| Modificada | Media (5.5) | 0.95% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Human Resources component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Security Groups. | |
| Modificada | Media (6.4) | 1.4% | — | Oracle E-business Suite | 17/1/2013 | 16/6/2026 | Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity, related to UWQ Server Issues. | |
| Modificada | Media (4.3) | 1.0% | — | Oracle E-business Suite | 17/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to the Web interface. | |
| Modificada | Media (5) | 1.3% | — | Oracle E-business Suite | 17/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect availability via unknown vectors related to Signon. | |
| Modificada | Media (6.4) | 1.5% | — | Oracle E-business Suite | 17/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and availability, related to PDF generation. | |
| Modificada | Media (5) | 1.3% | — | Oracle E-business Suite | 17/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality via unknown vectors related to Autoconfig Templates. | |
| Modificada | Baja (3.5) | 0.82% | — | Oracle E-business Suite | 17/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Publish Item. | |
| Modificada | Baja (1.7) | 0.32% | — | Oracle E-business Suite | 16/10/2012 | 16/6/2026 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows local users to affect confidentiality, related to MDS loading. |