Known vulnerabilities in Oracle Policy Automation for Mobile Devices
Vendor:
Oracle
Software CPE:
cpe:2.3:a:oracle:oracle_policy_automation_for_mobile_devices:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
4
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.7
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU59098 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44832 |
CWE-94 | Medium | - | 28.12.2021 |
SB2021122816 SB2021123002 SB2022010601 and 197 more |
||
| #VU27487 - Improper Certificate Validation CVE-2020-9488 |
CWE-295 | Low | - | 04.05.2020 |
SB2020050406 SB2020071606 SB2020071620 and 67 more |
||
| #VU27052 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2020-11022 |
CWE-79 | Low | - | 21.04.2020 |
SB2020042126 SB2020052033 SB2020052103 and 181 more |
||
| #VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\') CVE-2019-11358 |
CWE-1321 | Low | - | 28.03.2019 |
SB2019032804 SB2019041026 SB2019041801 and 155 more |