Known vulnerabilities in Communications Service Catalog and Design - page 2

Vendor: Oracle
Software CPE: cpe:2.3:a:oracle:communications_service_catalog_and_design:*:*:*:*:*:*:*:*
Total vulnerabilities: 34
Public exploits: 5
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Communications Service Catalog and Design Communications Service Catalog and Design is affected by 34 known vulnerabilities: 6 high, 19 medium, 9 low Critical High Medium Low

Vulnerabilities (34)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU85459 - Improper input validation
CVE-2022-45868
CWE-20 Low
No
No
- 16.01.2024 SB2024011767
SB2024013014
#VU83312 - Authorization Bypass Through User-Controlled Key
CVE-2023-44981
CWE-639 Medium
No
No
- 20.11.2023 SB2023112072
SB2023112073
SB2023112077
and 45 more
#VU83241 - Information Exposure Through Log Files
CVE-2023-44483
CWE-532 Medium
No
No
- 17.11.2023 SB2023111724
SB2023111747
SB2023120143
and 76 more
#VU81799 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-45648
CWE-444 Medium
No
No
- 10.10.2023 SB2023101084
SB2023101122
SB2023101123
and 47 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
- 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 651 more
#VU80880 - Security Features
CVE-2023-34034
CWE-254 High
No
No
- 19.09.2023 SB2023091914
SB2023100926
SB20231017104
and 22 more
#VU80788 - Resource exhaustion
CVE-2023-42503
CWE-400 Medium
No
No
- 14.09.2023 SB2023091434
SB2023111725
SB2023112014
and 30 more
#VU77107 - Incorrect Default Permissions
CVE-2023-2976
CWE-276 Low
No
No
- 08.06.2023 SB2023060849
SB2023071712
SB2023072512
and 157 more
#VU76427 - Resource Management Errors
CVE-2023-20883
CWE-399 Medium
No
No
- 23.05.2023 SB2023052310
SB2023052311
SB2023061548
and 42 more
#VU72123 - Deserialization of Untrusted Data
CVE-2023-25194
CWE-502 Low
Available
No
- 11.02.2023 SB2023021101
SB2023030952
SB2023040419
and 40 more
#VU70531 - Deserialization of Untrusted Data
CVE-2022-36944
CWE-502 High
Available
No
- 28.12.2022 SB2022122829
SB2022122924
SB2023021531
and 15 more
#VU70441 - Insufficient Verification of Data Authenticity
CVE-2021-37533
CWE-345 Low
No
No
- 20.12.2022 SB2022122007
SB2022123001
SB2023011876
and 82 more
#VU70385 - Deserialization of Untrusted Data
CVE-2022-1471
CWE-502 High
Available
No
- 15.12.2022 SB2022121539
SB2022121540
SB2022121928
and 124 more
#VU69809 - Out-of-bounds write
CVE-2022-42920
CWE-787 High
No
No
- 01.12.2022 SB2022120151
SB2022120154
SB2022120628
and 56 more


Showing elements 21 - 40 out of 34