Known vulnerabilities in Oracle Banking Deposits and Lines of Credit Servicing

Vendor: Oracle
Software CPE: cpe:2.3:a:oracle:oracle_banking_deposits_and_lines_of_credit_servicing:*:*:*:*:*:*:*:*
Total vulnerabilities: 13
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Oracle Banking Deposits and Lines of Credit Servicing Oracle Banking Deposits and Lines of Credit Servicing is affected by 13 known vulnerabilities: 3 high, 8 medium, 2 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86625 - Resource exhaustion
CVE-2024-26308
CWE-400 Medium
No
No
- 20.02.2024 SB2024022033
SB2024022937
SB2024031520
and 138 more
#VU86224 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-24816
CWE-79 Low
Available
No
- 07.02.2024 SB2024020740
SB2024041767
SB20240718122
and 3 more
#VU82276 - Allocation of Resources Without Limits or Throttling
CVE-2023-5072
CWE-770 Medium
No
No
- 20.10.2023 SB2023102017
SB2023102018
SB2023113056
and 97 more
#VU78394 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-28439
CWE-79 Low
No
No
- 19.07.2023 SB2023071950
SB2023071977
SB20230719111
and 13 more
#VU77573 - Resource exhaustion
CVE-2023-34462
CWE-400 Medium
No
No
- 20.06.2023 SB2023062026
SB2023072521
SB2023072539
and 99 more
#VU70385 - Deserialization of Untrusted Data
CVE-2022-1471
CWE-502 High
Available
No
- 15.12.2022 SB2022121539
SB2022121540
SB2022121928
and 124 more
#VU68635 - Deserialization of Untrusted Data
CVE-2022-42003
CWE-502 Medium
No
No
- 25.10.2022 SB2022102509
SB2022102510
SB2022103117
and 208 more
#VU65469 - Improper input validation
CVE-2022-29577
CWE-20 Medium
No
No
- 19.07.2022 SB2022071969
SB2022072038
SB20221018125
and 10 more
#VU64957 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-33980
CWE-94 High
Available
No
- 06.07.2022 SB2022070645
SB2022072604
SB2022081517
and 31 more
#VU61810 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-43797
CWE-444 Medium
No
No
- 02.04.2022 SB2021120923
SB2022040202
SB2022042223
and 50 more
#VU59965 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-23437
CWE-835 Medium
No
No
- 25.01.2022 SB2022012503
SB2022041946
SB2022042249
and 92 more
#VU59098 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-44832
CWE-94 Medium
No
No
- 28.12.2021 SB2021122816
SB2021123002
SB2022010601
and 197 more
#VU51511 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-13936
CWE-94 High
No
No
- 16.03.2021 SB2021031618
SB2021072614
SB2022011911
and 45 more