Known vulnerabilities in Oracle REST Data Services 12.1.0.2
Vendor:
Oracle
Software:
Oracle REST Data Services
Version:
12.1.0.2
Software CPE:
cpe:2.3:a:oracle:ords:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
17.4.0
18.1.0
18.2.0
18.3.0
18.4.0
19.1.0
19.2.0
19.4.0
20.2.0
20.3.0
20.4.0
21.1.0
21.4.0
22.1.0
22.2.0
22.3.0
22.4.0
23.4.0
24.1.0
25.1.0
26.1.0
26.1.1
25.4.0
25.3.1
25.3.0
25.2.3
25.2.2
25.2.0
25.1.1
24.4.0
24.3.1
24.2.1
25.2.1
24.3.0
24.2.0
23.3.1
23.3.0
23.2.2
23.2.1
23.2.0
23.1.0
21.3
22.1.1
21.2
21.2.4
21.2.0
20.4.3.050.1904
20.2.1
19c
18c
12.2.0.1
12.1.0.2
11.2.0.4
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2020-11023 |
CWE-79 | Low | 20.2.1 | 05.05.2020 |
SB2020042126 SB2020052033 SB2020052103 and 180 more |
||
| #VU13529 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2017-7658 |
CWE-444 | Low | - | 02.07.2018 |
SB2018070205 SB2018082001 SB2020102711 and 17 more |
||
| #VU12312 - Deserialization of Untrusted Data CVE-2016-1000031 |
CWE-502 | High | - | 01.05.2018 |
SB2017111432 SB2018110601 SB2019051512 and 39 more |