Known vulnerabilities in Oracle API Gateway
Vendor:
Oracle
Software:
Oracle API Gateway
Software CPE:
cpe:2.3:a:oracle:oracle_api_gateway:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU48896 - NULL Pointer Dereference CVE-2020-1971 |
CWE-476 | Medium | - | 08.12.2020 |
SB2020120852 SB2020120903 SB2020120905 and 91 more |
||
| #VU29068 - Server-Side Request Forgery (SSRF) CVE-2019-17566 |
CWE-918 | Medium | - | 16.06.2020 |
SB2020061613 SB2020062304 SB2020072310 and 23 more |
||
| #VU47428 - Permissions, Privileges, and Access Controls CVE-2020-11979 |
CWE-264 | Low | - | 14.05.2020 |
SB2020100804 SB2020100815 SB2020111614 and 51 more |
||
| #VU21043 - Cryptographic Issues CVE-2019-1547 |
CWE-310 | Low | - | 11.09.2019 |
SB2019091112 SB2019091202 SB2019092407 and 39 more |
||
| #VU17860 - Use of a Broken or Risky Cryptographic Algorithm CVE-2019-1559 |
CWE-327 | Low | - | 26.02.2019 |
SB2019022607 SB2019022802 SB2019022809 and 50 more |
||
| #VU13325 - Improper input validation CVE-2018-0732 |
CWE-20 | Low | - | 12.06.2018 |
SB2018061305 SB2018070906 SB2018073005 and 54 more |