Known vulnerabilities in Oracle Communications Cloud Native Core Console

Vendor: Oracle
Software CPE: cpe:2.3:a:oracle:oracle_communications_cloud_native_core_console:*:*:*:*:*:*:*:*
Total vulnerabilities: 62
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Oracle Communications Cloud Native Core Console Oracle Communications Cloud Native Core Console is affected by 62 known vulnerabilities: 1 critical, 9 high, 40 medium, 12 low Critical High Medium Low

Vulnerabilities (62)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU122076 - Stack-based buffer overflow
CVE-2025-15467
CWE-121 High
Available
No
- 27.01.2026 SB2026012785
SB2026012791
SB2026012792
and 66 more
#VU121727 - Improper input validation
CVE-2026-21945
CWE-20 Medium
No
No
- 20.01.2026 SB20260120152
SB20260120153
SB20260120154
and 96 more
#VU120611 - Out-of-bounds write
CVE-2025-68973
CWE-787 High
No
No
- 29.12.2025 SB2025122901
SB2025122902
SB2026010860
and 27 more
#VU119955 - Heap-based Buffer Overflow
CVE-2025-14104
CWE-122 Low
No
No
- 15.12.2025 SB2025121510
SB2025121939
SB2026011282
and 14 more
#VU114346 - Command injection
CVE-2025-7962
CWE-77 Medium
No
No
- 21.08.2025 SB2025082145
SB2025082146
SB2025082147
and 54 more
#VU111223 - Type confusion
CVE-2025-49796
CWE-843 Medium
No
No
- 17.06.2025 SB2025061728
SB2025070832
SB20250709112
and 84 more
#VU111165 - Improper Access Control
CVE-2025-48734
CWE-284 Medium
No
No
- 16.06.2025 SB2025061643
SB2025061644
SB2025061645
and 141 more
#VU111062 - Permissions, Privileges, and Access Controls
CVE-2025-4598
CWE-264 Low
Available
No
- 11.06.2025 SB2025061128
SB2025061134
SB2025061152
and 19 more
#VU109844 - Untrusted Search Path
CVE-2025-4802
CWE-426 Low
No
No
- 27.05.2025 SB2025052725
SB2025052735
SB2025052910
and 36 more
#VU103770 - Improper input validation
CVE-2025-24970
CWE-20 Medium
No
No
- 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 88 more
#VU98025 - Resource exhaustion
CVE-2024-47554
CWE-400 Medium
No
No
- 03.10.2024 SB2024100352
SB2024100421
SB2024101007
and 132 more
#VU96900 - Exposure of sensitive information to an unauthorized actor
CVE-2024-7885
CWE-200 Medium
No
No
- 05.09.2024 SB2024090598
SB2024090599
SB2024092018
and 16 more
#VU96484 - Improper Verification of Cryptographic Signature
CVE-2024-38807
CWE-347 Low
No
No
- 23.08.2024 SB2024082337
SB2025012192
SB2025012468
and 1 more
#VU96052 - Resource exhaustion
CVE-2024-5971
CWE-400 Medium
No
No
- 15.08.2024 SB2024081548
SB2024082312
SB2024082313
and 11 more
#VU94063 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-3596
CWE-327 Medium
Available
No
- 10.07.2024 SB2024071018
SB2024071019
SB2024071020
and 114 more
#VU93424 - Out-of-bounds read
CVE-2024-5535
CWE-125 Low
Available
No
- 27.06.2024 SB2024062720
SB20240717135
SB2024072154
and 157 more
#VU88144 - Improper input validation
CVE-2024-28182
CWE-20 Medium
No
No
- 04.04.2024 SB2024040442
SB2024040443
SB2024040444
and 124 more
#VU87850 - Missing Release of Resource after Effective Lifetime
CVE-2024-2398
CWE-772 Medium
No
No
- 27.03.2024 SB2024032713
SB2024032740
SB2024032744
and 106 more
#VU86625 - Resource exhaustion
CVE-2024-26308
CWE-400 Medium
No
No
- 20.02.2024 SB2024022033
SB2024022937
SB2024031520
and 138 more
#VU77252 - NULL Pointer Dereference
CVE-2023-2953
CWE-476 Medium
No
No
- 13.06.2023 SB2023061366
SB2023061417
SB2023061418
and 59 more


Showing elements 1 - 20 out of 62