Known vulnerabilities in Oracle Communications Converged Charging System
Vendor:
Oracle
Software CPE:
cpe:2.3:a:oracle:oracle_communications_converged_charging_system:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
14
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (14)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114026 - Resource exhaustion CVE-2025-55163 |
CWE-400 | Medium | - | 13.08.2025 | - | ||
| #VU113187 - Double Free CVE-2025-8058 |
CWE-415 | High | - | 24.07.2025 | - | ||
| #VU113156 - Memory corruption CVE-2025-6965 |
CWE-119 | Medium | - | 22.07.2025 | - | ||
| #VU111223 - Type confusion CVE-2025-49796 |
CWE-843 | Medium | - | 17.06.2025 | - | ||
| #VU106926 - Resource Management Errors CVE-2024-57699 |
CWE-399 | Medium | - | 03.04.2025 | - | ||
| #VU103980 - Resource exhaustion CVE-2024-12133 |
CWE-400 | Medium | - | 14.02.2025 | - | ||
| #VU97574 - Uncontrolled Recursion CVE-2024-7254 |
CWE-674 | Medium | - | 19.09.2024 | - | ||
| #VU93519 - Out-of-bounds read CVE-2024-37371 |
CWE-125 | Medium | - | 01.07.2024 | - | ||
| #VU88144 - Improper input validation CVE-2024-28182 |
CWE-20 | Medium | - | 04.04.2024 | - | ||
| #VU87779 - Exposure of sensitive information to an unauthorized actor CVE-2024-29025 |
CWE-200 | Medium | - | 25.03.2024 | - | ||
| #VU84537 - Inadequate Encryption Strength CVE-2023-48795 |
CWE-326 | Low | - | 19.12.2023 | - | ||
| #VU83900 - Exposure of sensitive information to an unauthorized actor CVE-2023-46218 |
CWE-200 | Low | - | 06.12.2023 | - | ||
| #VU83316 - Information Exposure Through Timing Discrepancy CVE-2023-5981 |
CWE-208 | Medium | - | 20.11.2023 | - | ||
| #VU81728 - Resource exhaustion CVE-2023-44487 |
CWE-400 | High | - | 10.10.2023 | - |